Vulnerability index

Browse CVEs

184 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-39370

An arbitrary code execution vulnerability exists in the adm.cgi set_MeshAp() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted …

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware MEDIUM 6.1
CVE-2024-39363EPSS 48%

A cross-site scripting (xss) vulnerability exists in the login.cgi set_lang_CountryCode() functionality of Wavlink AC3000 M33A8.V5030.210505. A speci…

No fix yet
Fix from $1,600 2025-01-14
Wl Wn533a8 Firmware CRITICAL 9.1
CVE-2024-39280EPSS 34%

An external config control vulnerability exists in the nas.cgi set_smb_cfg() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted …

No fix yet
Fix from $2,300 2025-01-14
Wl Wn533a8 Firmware HIGH 8.1
CVE-2024-39273

A firmware update vulnerability exists in the fw_check.sh functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can le…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-39288EPSS 13%

A buffer overflow vulnerability exists in the internet.cgi set_add_routing() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted …

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-39294

A buffer overflow vulnerability exists in the adm.cgi set_wzdgw4G() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP requ…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-39299

A buffer overflow vulnerability exists in the qos.cgi qos_sta_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-39357

A stack-based buffer overflow vulnerability exists in the wireless.cgi SetName() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially craf…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware CRITICAL 9.1
CVE-2024-38666EPSS 19%

An external config control vulnerability exists in the openvpn.cgi openvpn_client_setup() functionality of Wavlink AC3000 M33A8.V5030.210505. A speci…

No fix yet
Fix from $2,300 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-37184

A buffer overflow vulnerability exists in the adm.cgi rep_as_bridge() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP re…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-37186EPSS 23%

An os command injection vulnerability exists in the adm.cgi set_ledonoff() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HT…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-37357EPSS 10%

A buffer overflow vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP reques…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware CRITICAL 9.8
CVE-2024-36258EPSS 12%

A stack-based buffer overflow vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A sp…

No fix yet
Fix from $2,300 2025-01-14
Wl Wn533a8 Firmware CRITICAL 9.8
CVE-2024-36290

A buffer overflow vulnerability exists in the login.cgi Goto_chidx() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP req…

No fix yet
Fix from $2,300 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-36272

A buffer overflow vulnerability exists in the usbip.cgi set_info() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP reque…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-36295EPSS 21%

A command execution vulnerability exists in the qos.cgi qos_sta() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP reques…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-36493

A stack-based buffer overflow vulnerability exists in the wireless.cgi set_wifi_basic() functionality of Wavlink AC3000 M33A8.V5030.210505. A special…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware CRITICAL 9.8
CVE-2024-34166EPSS 16%

An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A speciall…

No fix yet
Fix from $2,300 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-34544EPSS 8%

A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP re…

No fix yet
Fix from $1,950 2025-01-14
Wl Wn533a8 Firmware HIGH 7.2
CVE-2024-21797EPSS 21%

A command execution vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP requ…

No fix yet
Fix from $1,950 2025-01-14
Wn701ae Firmware CRITICAL 9.8
CVE-2024-54745

WAVLINK WN701AE M01AE_V240305 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.

No fix yet
Fix from $2,300 2024-12-06
Wn531p3 Firmware CRITICAL 9.8
CVE-2024-54747

WAVLINK WN531P3 202383 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.

No fix yet
Fix from $2,300 2024-12-06
Wn530h4 Firmware HIGH 7.2
CVE-2024-10428EPSS 15%

A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This issue affects the function se…

No fix yet
Fix from $1,950 2024-10-27
Wn530h4 Firmware HIGH 7.2
CVE-2024-10429EPSS 18%

A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected is the function set_ipv6 of …

No fix yet
Fix from $1,950 2024-10-27
Wn551k1 Firmware MEDIUM 6.5
CVE-2024-38892

An issue in Wavlink WN551K1 allows a remote attacker to obtain sensitive information via the ExportAllSettings.sh component.

No fix yet
Fix from $1,600 2024-06-24
Wn551k1 Firmware MEDIUM 5.3
CVE-2024-38894

WAVLINK WN551K1 found a command injection vulnerability through the IP parameter of /cgi-bin/touchlist_sync.cgi.

No fix yet
Fix from $1,600 2024-06-24
Wn551k1 Firmware MEDIUM 5.3
CVE-2024-38895

WAVLINK WN551K1'live_mfg.shtml enables attackers to obtain sensitive router information.

No fix yet
Fix from $1,600 2024-06-24
Wn551k1 Firmware MEDIUM 5.3
CVE-2024-38896

WAVLINK WN551K1 found a command injection vulnerability through the start_hour parameter of /cgi-bin/nightled.cgi.

No fix yet
Fix from $1,600 2024-06-24
Wn551k1 Firmware MEDIUM 5.3
CVE-2024-38897

WAVLINK WN551K1'live_check.shtml enables attackers to obtain sensitive router information.

No fix yet
Fix from $1,600 2024-06-24
Wl Wn575a3 Firmware CRITICAL 9.8
CVE-2023-38861

An issue in Wavlink WL_WNJ575A3 v.R75A3_V1410_220513 allows a remote attacker to execute arbitrary code via username parameter of the set_sys_adm fun…

No fix yet
Fix from $2,300 2023-08-15