Vulnerability index

Browse CVEs

201 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2024-10428EPSS 15% A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This issue affects the function se… Wn530h4 Firmware No fix yet Fix from $1,9502024-10-27 HIGH 7.2 CVE-2024-10429EPSS 18% A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected is the function set_ipv6 of … Wn530h4 Firmware No fix yet Fix from $1,9502024-10-27 HIGH 8.8 CVE-2024-10194 A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been classified as critical. Affected is the function Goto… Wn530h4 Firmware after 20221028 Fix from $1,9502024-10-20 HIGH 7.2 CVE-2024-10193EPSS 15% A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028 and classified as critical. This issue affects the function ping_d… Wn530h4 Firmware after 20221028 Fix from $1,9502024-10-20 MEDIUM 6.5 CVE-2024-38892 An issue in Wavlink WN551K1 allows a remote attacker to obtain sensitive information via the ExportAllSettings.sh component. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38894 WAVLINK WN551K1 found a command injection vulnerability through the IP parameter of /cgi-bin/touchlist_sync.cgi. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38895 WAVLINK WN551K1'live_mfg.shtml enables attackers to obtain sensitive router information. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38896 WAVLINK WN551K1 found a command injection vulnerability through the start_hour parameter of /cgi-bin/nightled.cgi. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 MEDIUM 5.3 CVE-2024-38897 WAVLINK WN551K1'live_check.shtml enables attackers to obtain sensitive router information. Wn551k1 Firmware No fix yet Fix from $1,6002024-06-24 CRITICAL 9.8 CVE-2023-38861 An issue in Wavlink WL_WNJ575A3 v.R75A3_V1410_220513 allows a remote attacker to execute arbitrary code via username parameter of the set_sys_adm fun… Wl Wn575a3 Firmware No fix yet Fix from $2,3002023-08-15 HIGH 8.1 CVE-2023-32613 Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow a network-adjacent attacker to u… Wl Wn531ax2 Firmware 2023526+ Fix from $1,9502023-06-30 HIGH 7.2 CVE-2023-32612 Client-side enforcement of server-side security issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow an attacker with an a… Wl Wn531ax2 Firmware 2023526+ Fix from $1,9502023-06-30 HIGH 7.2 CVE-2023-32621 WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an administrative privilege to upload arbitrary files and execute OS commands … Wl Wn531ax2 Firmware 2023526+ Fix from $1,9502023-06-30 HIGH 7.2 CVE-2023-32622 Improper neutralization of special elements in WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an administrative privilege to … Wl Wn531ax2 Firmware 2023526+ Fix from $1,9502023-06-30 MEDIUM 6.5 CVE-2023-32620 Improper authentication vulnerability in WL-WN531AX2 firmware versions prior to 2023526 allows a network-adjacent attacker to obtain a password for t… Wl Wn531ax2 Firmware 2023526+ Fix from $1,6002023-06-30 CRITICAL 9.8 CVE-2023-3380 A vulnerability classified as critical has been found in Wavlink WN579X3 up to 20230615. Affected is an unknown function of the file /cgi-bin/adm.cgi… Wn579x3 Firmware after 2023-06-15 Fix from $2,3002023-06-23 HIGH 7.5 CVE-2023-29708EPSS 14% An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows attackers to force a factory reset via crafted payload. Wavrouter App No fix yet Fix from $1,9502023-06-22 HIGH 7.5 CVE-2022-48166 An access control issue in Wavlink WL-WN530HG4 M30HG4.V5030.201217 allows unauthenticated attackers to download configuration data and log files and … Wl Wn530hg4 Firmware No fix yet Fix from $1,9502023-02-06 HIGH 7.5 CVE-2022-48164 An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN533A8 M33A8.V5030.190716 allows unauthenticated attackers to download… Wl Wn533a8 Firmware No fix yet Fix from $1,9502023-02-06 HIGH 7.5 CVE-2022-48165 An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN530H4 M30H4.V5030.210121 allows unauthenticated attackers to download… Wl Wn530h4 Firmware No fix yet Fix from $1,9502023-02-03 HIGH 7.5 CVE-2022-44356 WAVLINK Quantum D4G (WL-WN531G3) running firmware versions M31G3.V5030.201204 and M31G3.V5030.200325 has an access control issue which allows unauthe… Wl Wn531g3 Firmware No fix yet Fix from $1,9502022-11-29 HIGH 8.8 CVE-2022-40622 The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 uses IP addresses to hold sessions and does not not use session tokens.… Wn531g3 Firmware No fix yet Fix from $1,9502022-09-13 HIGH 8.8 CVE-2022-40623 The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 does not utilize anti-CSRF tokens, which, when combined with other issu… Wn531g3 Firmware No fix yet Fix from $1,9502022-09-13 HIGH 7.5 CVE-2022-40621 Because the WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 and earlier communicates over HTTP and not HTTPS, and because t… Wn531g3 Firmware No fix yet Fix from $1,9502022-09-13 CRITICAL 9.8 CVE-2022-37149 WAVLINK WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection vulnerability when operating the file adm.cgi. This vulnerabili… Wl Wn575a3 Firmware No fix yet Fix from $2,3002022-08-30 CRITICAL 9.8 CVE-2022-35534 WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter hiddenSSID32g and SSID2G2, which leads to command inj… Wn572hp3 Firmware No fix yet Fix from $2,3002022-08-10 CRITICAL 9.8 CVE-2022-35535 WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter macAddr, which leads to command injection in page /wi… Wn572hp3 Firmware No fix yet Fix from $2,3002022-08-10 CRITICAL 9.8 CVE-2022-35536 WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters: qos_bandwith and qos_dat, which leads to command injecti… Wn572hp3 Firmware No fix yet Fix from $2,3002022-08-10 CRITICAL 9.8 CVE-2022-35537 WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters: mac_5g and Newname, which leads to command injectio… Wn572hp3 Firmware No fix yet Fix from $2,3002022-08-10 CRITICAL 9.8 CVE-2022-35538 WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters: delete_list, delete_al_mac, b_delete_list and b_del… Wn572hp3 Firmware No fix yet Fix from $2,3002022-08-10