High severity8.0NVD Advisory· Published Jul 20, 2022· Updated Jun 17, 2026
CVE-2022-2488
CVE-2022-2488
Description
A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/touchlist_sync.cgi. The manipulation of the argument IP leads to os command injection. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:o:wavlink:wl-wn535k2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:wavlink:wl-wn535k3_firmware:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- github.com/1angx/webray.com.cn/blob/main/Wavlink/Wavlink%20touchlist_sync.cgi.mdnvdExploitThird Party Advisory
- vuldb.comnvdThird Party AdvisoryVDB Entry
- www.talosintelligence.com/vulnerability_reports/TALOS-2024-1999nvd
News mentions
0No linked articles in our index yet.