Vulnerability Description
A vulnerability in /cgi-bin/ExportAllSettings.sh of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to execute arbitrary code via a crafted POST request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wavlink | Wn535G3 Firmware | m35g3r.v5030.180927 |
| Wavlink | Wn535G3 | - |
References
- https://github.com/pghuanghui/CVE_Request/blob/main/WAVLINK%20WN535%20G3_SensitiExploitThird Party Advisory
- https://github.com/pghuanghui/CVE_Request/blob/main/WAVLINK%20WN535%20G3_SensitiExploitThird Party Advisory
FAQ
What is CVE-2022-34576?
CVE-2022-34576 is a vulnerability with a CVSS score of 7.5 (HIGH). A vulnerability in /cgi-bin/ExportAllSettings.sh of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to execute arbitrary code via a crafted POST request.
How severe is CVE-2022-34576?
CVE-2022-34576 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-34576?
Check the references section above for vendor advisories and patch information. Affected products include: Wavlink Wn535G3 Firmware, Wavlink Wn535G3.