First published: Wed Jul 20 2022(Updated: )
An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/set_safety.shtml?r=52300 and searching for [var syspasswd].
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wavlink Wl-wn530hg4 Firmware | =m30hg4.v5030.191116 | |
Wavlink WL-WN530HG4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-34047 is high with a CVSS score of 7.5.
CVE-2022-34047 affects Wavlink WN530HG4 devices running firmware version m30hg4.v5030.191116.
The vulnerability in CVE-2022-34047 is an access control issue that allows attackers to obtain usernames and passwords.
No, Wavlink WL-WN530HG4 devices are not vulnerable to CVE-2022-34047.
To fix the access control issue, it is recommended to update the firmware to a version that addresses the vulnerability.