Vulnerabilidades en WAVLINK
137 resultadosAnálisis Vexday
Wavlink acumula 11 vulnerabilidades catalogadas, sendo 1 de severidade crítica, mas nenhuma sob exploração ativa conhecida até o momento. A fraqueza dominante é CWE-77 (command injection), padrão típico em dispositivos de rede, e o risco não é recente — ausência de divulgações nos últimos 90 dias sugere que a base de vulnerabilidades é estabilizada e de menor dinâmica de descoberta.
CVE-2024-36272CRITICALA buffer overflow vulnerability exists in the usbip.cgi set_info() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HEPSS 1.3%CVE-2024-39774CRITICALA buffer overflow vulnerability exists in the adm.cgi set_sys_adm() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted EPSS 1.3%CVE-2024-39754CRITICALA static login vulnerability exists in the wctrls functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted set of network pacEPSS 1.3%CVE-2024-39799CRITICALMultiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup() functionality of Wavlink AC3000 M33A8.V503EPSS 1.3%CVE-2024-39803CRITICALMultiple buffer overflow vulnerabilities exist in the qos.cgi qos_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A speciallyEPSS 1.3%CVE-2024-39768CRITICALMultiple buffer overflow vulnerabilities exist in the internet.cgi set_qos() functionality of Wavlink AC3000 M33A8.V5030.210505. A speciallyEPSS 1.3%CVE-2024-39770CRITICALMultiple buffer overflow vulnerabilities exist in the internet.cgi set_qos() functionality of Wavlink AC3000 M33A8.V5030.210505. A speciallyEPSS 1.3%CVE-2026-3703CRITICALWavlink NU516U1 login.cgi sub_401A10 out-of-bounds writeEPSS 1.2%CVE-2024-10194HIGHWAVLINK WN530H4/WN530HG4/WN572HG3 Front-End Authentication Page login.cgi Goto_chidx stack-based overflowEPSS 1.2%CVE-2026-3613HIGHWavlink WL-NU516U1 login.cgi sub_401A0C stack-based overflowEPSS 1.1%CVE-2026-2567HIGHWavlink WL-NU516U1 nas.cgi sub_401218 stack-based overflowEPSS 1.1%CVE-2026-18589CRITICALWavlink WL-NU516U1 nas.cgi change_password stack-based overflowEPSS 1.1%CVE-2026-18588CRITICALWavlink WL-NU516U1 nas.cgi fgets stack-based overflowEPSS 1.1%CVE-2024-39273CRITICALA firmware update vulnerability exists in the fw_check.sh functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP requeEPSS 1.1%CVE-2024-39789CRITICALMultiple external config control vulnerabilities exist in the nas.cgi set_ftp_cfg() functionality of Wavlink AC3000 M33A8.V5030.210505. A spEPSS 1.1%CVE-2024-39794CRITICALMultiple external config control vulnerabilities exist in the nas.cgi set_nas() proftpd functionality of Wavlink AC3000 M33A8.V5030.210505. EPSS 1.1%CVE-2026-4861HIGHWavlink WL-NU516U1 nas.cgi ftext stack-based overflowEPSS 1.1%CVE-2026-5004HIGHWavlink WL-WN579X3-C UPNP firewall.cgi sub_4019FC stack-based overflowEPSS 1.1%CVE-2026-74843CRITICALWavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflowEPSS 1.0%CVE-2026-3715HIGHWavlink WL-WN579X3-C firewall.cgi sub_40139C stack-based overflowEPSS 1.0%