CVE-2022-34048: XSS
Published Jul 20, 2022
·Updated
Wavlink WN533A8 M33A8.V5030.190716 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the loginpage parameter.
Affected Software
2 affected components
Wavlink Wn533a8 Firmware=m33a8.v5030.190716
Wavlink WN533A8
Event History
Jul 20, 2022
CVE Published
via MITRE·04:50 PM
Data Sourced
via MITRE·04:50 PM
Description
Frequently Asked Questions
1
What is CVE-2022-34048?
CVE-2022-34048 refers to a reflected cross-site scripting (XSS) vulnerability in Wavlink WN533A8 M33A8.V5030.190716.
2
How severe is CVE-2022-34048?
CVE-2022-34048 has a severity rating of 6.1 (medium).
3
How does the XSS vulnerability in CVE-2022-34048 occur?
The XSS vulnerability in CVE-2022-34048 occurs via the login_page parameter.
4
Which software version is affected by CVE-2022-34048?
The Wavlink WN533A8 firmware version m33a8.v5030.190716 is affected by CVE-2022-34048.
5
Is the Wavlink WN533A8 device itself vulnerable to CVE-2022-34048?
No, the Wavlink WN533A8 device itself is not vulnerable to CVE-2022-34048.