CVE-2023-32613: High severity wavlink wl-wn531ax2 vulnerability
Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow a network-adjacent attacker to use functions originally available after login without logging in.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-32613.
What is the title of the vulnerability?
The title of the vulnerability is "Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526".
What is the description of the vulnerability?
The vulnerability allows a network-adjacent attacker to use functions originally available after login without logging in.
Which software versions are affected by this vulnerability?
WL-WN531AX2 firmware versions prior to 2023526 are affected by this vulnerability.
What is the severity of the vulnerability?
The severity of the vulnerability is high with a CVSS score of 8.1.
How can I fix this vulnerability?
To fix this vulnerability, update WL-WN531AX2 firmware to version 2023526 or later.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following references: [CVE-2023-32613](https://jvn.jp/en/jp/JVN78634340/) and [Wavlink Firmware Details](https://www.wavlink.com/en_us/firmware/details/932108ffc5.html).
What is the CWE ID associated with this vulnerability?
The CWE ID associated with this vulnerability is CWE-668.