VYPR

WN533A8

by Wavlink

CVEs (3)

  • CVE-2022-48164Feb 6, 2023
    risk 0.07cvss epss 0.87

    An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN533A8 M33A8.V5030.190716 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.

  • CVE-2020-10973May 7, 2020
    risk 0.02cvss epss 0.25

    An issue was discovered in Wavlink WN530HG4, Wavlink WN531G3, Wavlink WN533A8, and Wavlink WN551K1 affecting /cgi-bin/ExportAllSettings.sh where a crafted POST request returns the current configuration of the device, including the administrator password. No authentication is…

  • CVE-2022-35518Aug 9, 2022
    risk 0.00cvss epss 0.04

    WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 nas.cgi has no filtering on parameters: User1Passwd and User1, which leads to command injection in page /nas_disk.shtml.