Critical severity9.8NVD Advisory· Published Aug 30, 2022· Updated Jun 17, 2026
CVE-2022-37149
CVE-2022-37149
Description
WAVLINK WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection vulnerability when operating the file adm.cgi. This vulnerability allows attackers to execute arbitrary commands via the username parameter.
Affected products
3- Range: RPT75A3.V4300.201217
- WAVLINK/WL-WN575A3 RPT75A3.V4300.201217description
- cpe:2.3:o:wavlink:wl-wn575a3_firmware:rpt75a3.v4300.201217:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/fxc233/iot-vul/blob/main/WAVLINK/WN575A3/Readme.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.