First published: Fri Jun 30 2023(Updated: )
Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow a network-adjacent attacker to use functions originally available after login without logging in.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Wavlink Wl-wn531ax2 Firmware | <2023526 | |
Wavlink Wl-wn531ax2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-32613.
The title of the vulnerability is "Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526".
The vulnerability allows a network-adjacent attacker to use functions originally available after login without logging in.
WL-WN531AX2 firmware versions prior to 2023526 are affected by this vulnerability.
The severity of the vulnerability is high with a CVSS score of 8.1.
To fix this vulnerability, update WL-WN531AX2 firmware to version 2023526 or later.
You can find more information about this vulnerability at the following references: [CVE-2023-32613](https://jvn.jp/en/jp/JVN78634340/) and [Wavlink Firmware Details](https://www.wavlink.com/en_us/firmware/details/932108ffc5.html).
The CWE ID associated with this vulnerability is CWE-668.