CVE-2022-48166

CVSS V2 None CVSS V3 None
Description
An access control issue in Wavlink WL-WN530HG4 M30HG4.V5030.201217 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.
Overview
  • CVE ID
  • CVE-2022-48166
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-02-06T22:15:09
  • Last Modified Date
  • 2023-02-14T20:05:50
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:o:wavlink:wl-wn530hg4_firmware:m30hg4.v5030.201217:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:wavlink:wl-wn530hg4:-:*:*:*:*:*:*:* 0 OR
References
Reference URL Reference Tags
https://docs.google.com/document/d/1zvbuu3Hkk3CAkojAivlUESvtHblHJNLJdpGOoNtk-Vo/edit?usp=sharing Exploit Technical Description Third Party Advisory
https://github.com/strik3r0x1/Vulns/blob/main/WAVLINK%20WN530HG4.md Exploit Third Party Advisory
History
Created Old Value New Value Data Type Notes
2023-04-17 07:19:02 Added to TrackCVE
2023-04-17 07:19:04 Weakness Enumeration new