CVE-2022-34047: High severity wavlink wn530hg4 firmware vulnerability
Published Jul 20, 2022
·Updated
An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IPADDRESS/setsafety.shtml?r=52300 and searching for [var syspasswd].
Affected Software
2 affected components
Wavlink Wl-wn530hg4 Firmware=m30hg4.v5030.191116
Wavlink WL-WN530HG4
Event History
Jul 20, 2022
CVE Published
via MITRE·04:50 PM
Data Sourced
via MITRE·04:50 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-34047?
The severity of CVE-2022-34047 is high with a CVSS score of 7.5.
2
How does CVE-2022-34047 affect Wavlink WN530HG4 devices?
CVE-2022-34047 affects Wavlink WN530HG4 devices running firmware version m30hg4.v5030.191116.
3
What is the vulnerability in CVE-2022-34047?
The vulnerability in CVE-2022-34047 is an access control issue that allows attackers to obtain usernames and passwords.
4
Is Wavlink WL-WN530HG4 affected by CVE-2022-34047?
No, Wavlink WL-WN530HG4 devices are not vulnerable to CVE-2022-34047.
5
How can I fix the access control issue in Wavlink WN530HG4 devices?
To fix the access control issue, it is recommended to update the firmware to a version that addresses the vulnerability.