CVE-2022-48166

Summary:

WAVLINK WN530HG4 AC1200 High Power Dual Band Gigabit Router (WL-WN530HG4) devices running firmware version (M30HG4.V5030.201217) have an access control issue, allowing unauthenticated attackers to download configuration data and log files and obtain admin credentials.

Vendor:

  • Wavlink

Affected Product:

  • WL-WN530HG4

Version:

  • M30HG4.V5030.201217

Details:

When an unauthenticated attacker requests /cgi-bin/ExportLogs.sh this will lead to downloading all configurations and Admin Credentials and accessing the Device Dashboard

Last updated