Wavlink WL-WN530H4
cpe:2.3:h:wavlink:wl-wn530h4:*:*:*:*:*:*:*, +3 more
- WN530H4-WAVLINK_20220721
A critical OS command injection vulnerability exists in the Wavlink WN530H4 router, specifically in the firmware version WN530H4-WAVLINK_20220721. The issue arises in the '/cgi-bin/internet.cgi' file, within the 'set_add_routing' function, which handles HTTP POST parameters for static routing. User-supplied data is directly appended to a shell command using 'strcat()' and 'snprintf()' without proper sanitization, allowing authenticated attackers to inject arbitrary commands. This vulnerability, which can be exploited remotely, has been publicly disclosed and is present in other Wavlink models as well.
Exploitation of this vulnerability allows authenticated users to execute arbitrary commands with root privileges on the affected router, potentially leading to full device compromise and unauthorized access to network resources.
To reproduce this vulnerability, send a POST request to '/cgi-bin/internet.cgi' with a valid session cookie. Include injected payloads in the 'dest' and 'gateway' parameters. The injected commands will be executed with root privileges on the device.
Users are advised to upgrade to Wavlink WN530H4 firmware version 2026.04.16, available for download from the Wavlink Firmware Download page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.