Wavlink WN535K3
cpe:2.3:h:wavlink:wl-wn535k3:*:*:*:*:*:*:*, +1 more
- 20191010
A command injection vulnerability has been identified in the Wavlink WN535K3 router, specifically in the 20191010 version. The issue arises in the 'set_sys_cmd' function, where the 'command' parameter can be manipulated to execute arbitrary commands on the device via a crafted request.
Exploitation of this vulnerability allows for arbitrary command execution on the affected device.
To reproduce this vulnerability, send a POST request to '/cgi-bin/adm.cgi' on the router's IP address. Include the 'page' parameter set to 'set_sys_cmd' and the 'command' parameter with a crafted command, such as '1;pwd;'. The request should be made with the appropriate headers to mimic a legitimate XMLHttpRequest.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.