WAVLINK WN535K2/WN535K3 nightled.cgi os command injection
Vulnerability Description
A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/nightled.cgi. The manipulation of the argument start_hour leads to os command injection. The exploit has been disclosed to the public and may be used.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-2487
Credits & Attribution
No credits recorded in the NVD database.
References
More from WAVLINK
View All →Affected Vendor
WAVLINK
View all reports →