Skip to main content

Vendor archive

wavlink CVEs

Beta · best-effort

203 CVEs tagged to vendor wavlink97 Critical, 46 High, 29 Medium, 31 Low, 0 Unrated.

CVE-2023-3380

Published Jun 23, 2023

A vulnerability classified as critical has been found in Wavlink WN579X3 up to 20230615. Affected is an unknown function of the file /cgi-bin/adm.cgi of the component Ping Test. T…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-29708

Published Jun 22, 2023

An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows attackers to force a factory reset via crafted payload.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-48164

Published Feb 6, 2023

An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN533A8 M33A8.V5030.190716 allows unauthenticated attackers to download configuration data and log fi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-48165

Published Feb 3, 2023

An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN530H4 M30H4.V5030.210121 allows unauthenticated attackers to download configuration data and log fi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-40623

Published Sep 13, 2022

The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 does not utilize anti-CSRF tokens, which, when combined with other issues (such as CVE-2022-35518), c…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-40621

Published Sep 13, 2022

Because the WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 and earlier communicates over HTTP and not HTTPS, and because the hashing mechanism does not…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 126-150 of 203 CVEsPage 6 of 9