CVE-2022-31311: OS Command Injection
Published Jun 14, 2022
·Updated
An issue in adm.cgi of WAVLINK AERIAL X 1200M M79X3.V5030.180719 allows attackers to execute arbitrary commands via a crafted POST request.
Affected Software
2 affected components
Wavlink Aerial X 1200m Firmware=m79x3.v5030.180719
Wavlink AERIAL X 1200M
Event History
Jun 14, 2022
CVE Published
via MITRE·01:09 PM
Data Sourced
via MITRE·01:09 PM
Description
Frequently Asked Questions
1
What is CVE-2022-31311?
CVE-2022-31311 is an issue in adm.cgi of WAVLINK AERIAL X 1200M M79X3.V5030.180719 that allows attackers to execute arbitrary commands via a crafted POST request.
2
How does CVE-2022-31311 affect WAVLINK AERIAL X 1200M?
CVE-2022-31311 affects WAVLINK AERIAL X 1200M M79X3.V5030.180719 firmware.
3
What is the severity of CVE-2022-31311?
The severity of CVE-2022-31311 is critical with a CVSS score of 9.8.
4
How can an attacker exploit CVE-2022-31311?
An attacker can exploit CVE-2022-31311 by sending a crafted POST request to adm.cgi.
5
Is WAVLINK AERIAL X 1200M vulnerable to CVE-2022-31311?
No, WAVLINK AERIAL X 1200M is not vulnerable to CVE-2022-31311.