Vulnerability index

Browse CVEs

201 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wn535g3 Firmware HIGH 7.5
CVE-2022-31845EPSS 9%

A vulnerability in live_check.shtml of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to obtain sensitive router information via execution of …

No fix yet
Fix from $1,950 2022-06-14
Wn535g3 Firmware HIGH 7.5
CVE-2022-31846EPSS 7%

A vulnerability in live_mfg.shtml of WAVLINK WN535 G3 M35G3R.V5030.180927 allows attackers to obtain sensitive router information via execution of th…

No fix yet
Fix from $1,950 2022-06-14
Wn579x3 Firmware HIGH 7.5
CVE-2022-31847EPSS 6%

A vulnerability in /cgi-bin/ExportAllSettings.sh of WAVLINK WN579 X3 M79X3.V5030.180719 allows attackers to obtain sensitive router information via a…

No fix yet
Fix from $1,950 2022-06-14
Aerial X 1200m Firmware HIGH 7.5
CVE-2022-31308

A vulnerability in live_mfg.shtml of WAVLINK AERIAL X 1200M M79X3.V5030.191012 allows attackers to obtain sensitive router information via execution …

No fix yet
Fix from $1,950 2022-06-14
Wn535g3 Firmware MEDIUM 6.1
CVE-2022-30489

WAVLINK WN535 G3 was discovered to contain a cross-site scripting (XSS) vulnerability via the hostname parameter at /cgi-bin/login.cgi.

No fix yet
Fix from $1,600 2022-05-13
Wl Wn531p3 Firmware CRITICAL 9.8
CVE-2022-23900

A command injection vulnerability in the API of the Wavlink WL-WN531P3 router, version M31G3.V5030.201204, allows an attacker to achieve unauthorized…

No fix yet
Fix from $2,300 2022-04-07
Wl Wn531g3 Firmware CRITICAL 9.8
CVE-2021-44259

A vulnerability is in the 'wx.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to access thi…

No fix yet
Fix from $2,300 2022-03-17
Wl Wn531g3 Firmware HIGH 7.5
CVE-2021-44260EPSS 7%

A vulnerability is in the 'live_mfg.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to acce…

No fix yet
Fix from $1,950 2022-03-17
Wn575a4 Firmware CRITICAL 9.8
CVE-2020-13117EPSS 69%

Wavlink WN575A4, WN579X3, and WN530G3A devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a lo…

Fix: after 2020-05-15
Fix from $2,300 2021-02-09
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12124EPSS 75%

A remote command-line injection vulnerability in the /cgi-bin/live_api.cgi endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to e…

Mitigation only
Fix from $2,300 2020-10-02
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12125

A remote buffer overflow vulnerability in the /cgi-bin/makeRequest.cgi endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to execu…

Mitigation only
Fix from $2,300 2020-10-02
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12126

Multiple authentication bypass vulnerabilities in the /cgi-bin/ endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to leak router s…

Mitigation only
Fix from $2,300 2020-10-02
Wn530h4 Firmware HIGH 8.1
CVE-2020-12123

CSRF vulnerabilities in the /cgi-bin/ directory of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to remotely access router endpoints, beca…

Mitigation only
Fix from $1,950 2020-10-02
Wn530h4 Firmware HIGH 7.5
CVE-2020-12127EPSS 7%

An information disclosure vulnerability in the /cgi-bin/ExportAllSettings.sh endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to…

Mitigation only
Fix from $1,950 2020-10-02
Wl Wn530hg4 Firmware CRITICAL 9.8
CVE-2020-15489

An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple shell metacharacter injection vulnerabilities exist in CGI scrip…

Mitigation only
Fix from $2,300 2020-07-01
Wl Wn530hg4 Firmware CRITICAL 9.8
CVE-2020-15490

An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple buffer overflow vulnerabilities exist in CGI scripts, leading to…

Mitigation only
Fix from $2,300 2020-07-01
Wl Wn575a3 Firmware HIGH 8.8
CVE-2020-10971

An issue was discovered on Wavlink Jetstream devices where a crafted POST request can be sent to adm.cgi that will result in the execution of the sup…

Mitigation only
Fix from $1,950 2020-05-07
Wn530hg4 Firmware HIGH 7.5
CVE-2020-10972

An issue was discovered where a page is exposed that has the current administrator password in cleartext in the source code of the page. No authentic…

Mitigation only
Fix from $1,950 2020-05-07
Wn530hg4 Firmware HIGH 7.5
CVE-2020-10973EPSS 8%

An issue was discovered in Wavlink WN530HG4, Wavlink WN531G3, Wavlink WN533A8, and Wavlink WN551K1 affecting /cgi-bin/ExportAllSettings.sh where a cr…

Mitigation only
Fix from $1,950 2020-05-07
Wl Wn575a3 Firmware HIGH 7.5
CVE-2020-10974

An issue was discovered affecting a backup feature where a crafted POST request returns the current configuration of the device in cleartext, includi…

Mitigation only
Fix from $1,950 2020-05-07
Wl Wn579g3 Firmware HIGH 7.5
CVE-2020-12266

An issue was discovered where there are multiple externally accessible pages that do not require any sort of authentication, and store system informa…

Mitigation only
Fix from $1,950 2020-04-27