Vulnerability index

Browse CVEs

184 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2024-39370 An arbitrary code execution vulnerability exists in the adm.cgi set_MeshAp() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted … Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 MEDIUM 6.1 CVE-2024-39363EPSS 48% A cross-site scripting (xss) vulnerability exists in the login.cgi set_lang_CountryCode() functionality of Wavlink AC3000 M33A8.V5030.210505. A speci… Wl Wn533a8 Firmware No fix yet Fix from $1,6002025-01-14 CRITICAL 9.1 CVE-2024-39280EPSS 34% An external config control vulnerability exists in the nas.cgi set_smb_cfg() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted … Wl Wn533a8 Firmware No fix yet Fix from $2,3002025-01-14 HIGH 8.1 CVE-2024-39273 A firmware update vulnerability exists in the fw_check.sh functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can le… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-39288EPSS 13% A buffer overflow vulnerability exists in the internet.cgi set_add_routing() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted … Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-39294 A buffer overflow vulnerability exists in the adm.cgi set_wzdgw4G() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP requ… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-39299 A buffer overflow vulnerability exists in the qos.cgi qos_sta_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-39357 A stack-based buffer overflow vulnerability exists in the wireless.cgi SetName() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially craf… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 CRITICAL 9.1 CVE-2024-38666EPSS 19% An external config control vulnerability exists in the openvpn.cgi openvpn_client_setup() functionality of Wavlink AC3000 M33A8.V5030.210505. A speci… Wl Wn533a8 Firmware No fix yet Fix from $2,3002025-01-14 HIGH 7.2 CVE-2024-37184 A buffer overflow vulnerability exists in the adm.cgi rep_as_bridge() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP re… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-37186EPSS 23% An os command injection vulnerability exists in the adm.cgi set_ledonoff() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HT… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-37357EPSS 10% A buffer overflow vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP reques… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 CRITICAL 9.8 CVE-2024-36258EPSS 12% A stack-based buffer overflow vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A sp… Wl Wn533a8 Firmware No fix yet Fix from $2,3002025-01-14 CRITICAL 9.8 CVE-2024-36290 A buffer overflow vulnerability exists in the login.cgi Goto_chidx() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP req… Wl Wn533a8 Firmware No fix yet Fix from $2,3002025-01-14 HIGH 7.2 CVE-2024-36272 A buffer overflow vulnerability exists in the usbip.cgi set_info() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP reque… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-36295EPSS 21% A command execution vulnerability exists in the qos.cgi qos_sta() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP reques… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-36493 A stack-based buffer overflow vulnerability exists in the wireless.cgi set_wifi_basic() functionality of Wavlink AC3000 M33A8.V5030.210505. A special… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 CRITICAL 9.8 CVE-2024-34166EPSS 16% An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A speciall… Wl Wn533a8 Firmware No fix yet Fix from $2,3002025-01-14 HIGH 7.2 CVE-2024-34544EPSS 8% A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP re… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 HIGH 7.2 CVE-2024-21797EPSS 21% A command execution vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP requ… Wl Wn533a8 Firmware No fix yet Fix from $1,9502025-01-14 CRITICAL 9.8 CVE-2024-54745 WAVLINK WN701AE M01AE_V240305 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root. Wn701ae Firmware No fix yet Fix from $2,3002024-12-06 CRITICAL 9.8 CVE-2024-54747 WAVLINK WN531P3 202383 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root. Wn531p3 Firmware No fix yet Fix from $2,3002024-12-06 HIGH 7.2 CVE-2024-10428EPSS 15% A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This issue affects the function se… Wn530h4 Firmware No fix yet Fix from $1,9502024-10-27 HIGH 7.2 CVE-2024-10429EPSS 18% A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected is the function set_ipv6 of … Wn530h4 Firmware No fix yet Fix from $1,9502024-10-27 MEDIUM 6.5 CVE-2024-38892 An issue in Wavlink WN551K1 allows a remote attacker to obtain sensitive information via the ExportAllSettings.sh component. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38894 WAVLINK WN551K1 found a command injection vulnerability through the IP parameter of /cgi-bin/touchlist_sync.cgi. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38895 WAVLINK WN551K1'live_mfg.shtml enables attackers to obtain sensitive router information. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38896 WAVLINK WN551K1 found a command injection vulnerability through the start_hour parameter of /cgi-bin/nightled.cgi. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38897 WAVLINK WN551K1'live_check.shtml enables attackers to obtain sensitive router information. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 CRITICAL 9.8 CVE-2023-38861 An issue in Wavlink WL_WNJ575A3 v.R75A3_V1410_220513 allows a remote attacker to execute arbitrary code via username parameter of the set_sys_adm fun… Wl Wn575a3 Firmware No fix yet Fix from $2,3002023-08-15