Vulnerability index

Browse CVEs

184 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Wifi Repeater Firmware MEDIUM 5.7
CVE-2022-34572

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the telnet password via accessing the pag…

No fix yet
Fix from $1,600 2022-07-25
Wifi Repeater Firmware MEDIUM 5.7
CVE-2022-34574

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the key information of the device via acc…

No fix yet
Fix from $1,600 2022-07-25
Wifi Repeater Firmware MEDIUM 5.7
CVE-2022-34575

An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the key information of the device via acc…

No fix yet
Fix from $1,600 2022-07-25
Wl Wn530hg4 Firmware CRITICAL 9.8
CVE-2022-34045

Wavlink WN530HG4 M30HG4.V5030.191116 was discovered to contain a hardcoded encryption/decryption key for its configuration files at /etc_ro/lighttpd/…

No fix yet
Fix from $2,300 2022-07-20
Wn533a8 Firmware HIGH 7.5
CVE-2022-34046EPSS 20%

An access control issue in Wavlink WN533A8 M33A8.V5030.190716 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/sy…

No fix yet
Fix from $1,950 2022-07-20
Wl Wn530hg4 Firmware HIGH 7.5
CVE-2022-34047EPSS 21%

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/…

No fix yet
Fix from $1,950 2022-07-20
Wn533a8 Firmware MEDIUM 6.1
CVE-2022-34048EPSS 6%

Wavlink WN533A8 M33A8.V5030.190716 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the login_page parameter.

No fix yet
Fix from $1,600 2022-07-20
Wl Wn530hg4 Firmware MEDIUM 5.3
CVE-2022-34049

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows unauthenticated attackers to download log files and configuration data.

No fix yet
Fix from $1,600 2022-07-20
Wl Wn535k2 Firmware CRITICAL 9.8
CVE-2022-2486EPSS 30%

A vulnerability, which was classified as critical, was found in WAVLINK WN535K2 and WN535K3. This affects an unknown part of the file /cgi-bin/mesh.c…

No fix yet
Fix from $2,300 2022-07-20
Wl Wn535k2 Firmware CRITICAL 9.8
CVE-2022-2487EPSS 80%

A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This vulnerability affects unknown code of the file /cgi-bi…

No fix yet
Fix from $2,300 2022-07-20
Wl Wn535k2 Firmware CRITICAL 9.8
CVE-2022-2488EPSS 33%

A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/…

No fix yet
Fix from $2,300 2022-07-20
Wl Wn575a3 Firmware CRITICAL 9.8
CVE-2022-34592

Wavlink WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection vulnerability via the function obtw. This vulnerability allows …

No fix yet
Fix from $2,300 2022-07-07
Aerial X 1200m Firmware CRITICAL 9.8
CVE-2022-31311

An issue in adm.cgi of WAVLINK AERIAL X 1200M M79X3.V5030.180719 allows attackers to execute arbitrary commands via a crafted POST request.

No fix yet
Fix from $2,300 2022-06-14
Aerial X 1200m Firmware HIGH 7.5
CVE-2022-31309

A vulnerability in live_check.shtml of WAVLINK AERIAL X 1200M M79X3.V5030.180719 allows attackers to obtain sensitive router information via executio…

No fix yet
Fix from $1,950 2022-06-14
Wn535g3 Firmware HIGH 7.5
CVE-2022-31845EPSS 9%

A vulnerability in live_check.shtml of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to obtain sensitive router information via execution of …

No fix yet
Fix from $1,950 2022-06-14
Wn535g3 Firmware HIGH 7.5
CVE-2022-31846EPSS 7%

A vulnerability in live_mfg.shtml of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to obtain sensitive router information via execution of th…

No fix yet
Fix from $1,950 2022-06-14
Wn579x3 Firmware HIGH 7.5
CVE-2022-31847EPSS 6%

A vulnerability in /cgi-bin/ExportAllSettings.sh of WAVLINK WN579 X3 M79X3.V5030.180719 allows attackers to obtain sensitive router information via a…

No fix yet
Fix from $1,950 2022-06-14
Aerial X 1200m Firmware HIGH 7.5
CVE-2022-31308

A vulnerability in live_mfg.shtml of WAVLINK AERIAL X 1200M M79X3.V5030.191012 allows attackers to obtain sensitive router information via execution …

No fix yet
Fix from $1,950 2022-06-14
Wn535g3 Firmware MEDIUM 6.1
CVE-2022-30489

WAVLINK WN535 G3 was discovered to contain a cross-site scripting (XSS) vulnerability via the hostname parameter at /cgi-bin/login.cgi.

No fix yet
Fix from $1,600 2022-05-13
Wl Wn531p3 Firmware CRITICAL 9.8
CVE-2022-23900

A command injection vulnerability in the API of the Wavlink WL-WN531P3 router, version M31G3.V5030.201204, allows an attacker to achieve unauthorized…

No fix yet
Fix from $2,300 2022-04-07
Wl Wn531g3 Firmware CRITICAL 9.8
CVE-2021-44259

A vulnerability is in the 'wx.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to access thi…

No fix yet
Fix from $2,300 2022-03-17
Wl Wn531g3 Firmware HIGH 7.5
CVE-2021-44260EPSS 7%

A vulnerability is in the 'live_mfg.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to acce…

No fix yet
Fix from $1,950 2022-03-17
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12124EPSS 75%

A remote command-line injection vulnerability in the /cgi-bin/live_api.cgi endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to e…

Mitigation only
Fix from $2,300 2020-10-02
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12125

A remote buffer overflow vulnerability in the /cgi-bin/makeRequest.cgi endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to execu…

Mitigation only
Fix from $2,300 2020-10-02
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12126

Multiple authentication bypass vulnerabilities in the /cgi-bin/ endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to leak router s…

Mitigation only
Fix from $2,300 2020-10-02
Wn530h4 Firmware HIGH 8.1
CVE-2020-12123

CSRF vulnerabilities in the /cgi-bin/ directory of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to remotely access router endpoints, beca…

Mitigation only
Fix from $1,950 2020-10-02
Wn530h4 Firmware HIGH 7.5
CVE-2020-12127EPSS 7%

An information disclosure vulnerability in the /cgi-bin/ExportAllSettings.sh endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to…

Mitigation only
Fix from $1,950 2020-10-02
Wl Wn530hg4 Firmware CRITICAL 9.8
CVE-2020-15489

An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple shell metacharacter injection vulnerabilities exist in CGI scrip…

Mitigation only
Fix from $2,300 2020-07-01
Wl Wn530hg4 Firmware CRITICAL 9.8
CVE-2020-15490

An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple buffer overflow vulnerabilities exist in CGI scripts, leading to…

Mitigation only
Fix from $2,300 2020-07-01
Wl Wn575a3 Firmware HIGH 8.8
CVE-2020-10971

An issue was discovered on Wavlink Jetstream devices where a crafted POST request can be sent to adm.cgi that will result in the execution of the sup…

Mitigation only
Fix from $1,950 2020-05-07