CVE-2020-15490: Buffer Overflow
An issue was discovered on Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices. Multiple buffer overflow vulnerabilities exist in CGI scripts, leading to remote code execution with root privileges. (The set of affected scripts is similar to CVE-2020-12266.)
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-15490?
CVE-2020-15490 is a vulnerability found in Wavlink WL-WN530HG4 M30HG4.V5030.191116 devices that allows remote code execution with root privileges due to multiple buffer overflow vulnerabilities in CGI scripts.
How severe is CVE-2020-15490?
CVE-2020-15490 has a severity rating of 9.8, which is considered critical.
Which software is affected by CVE-2020-15490?
The Wavlink WL-WN530HG4 M30HG4.V5030.191116 firmware is affected by CVE-2020-15490.
How can CVE-2020-15490 be exploited?
CVE-2020-15490 can be exploited by using specially crafted input in the affected CGI scripts to trigger the buffer overflow and achieve remote code execution with root privileges.
Is there a fix available for CVE-2020-15490?
At the time of this writing, there is no known fix or patch available for CVE-2020-15490. It is recommended to apply any updates or security patches provided by the vendor.