WAVLINK WN535K2/WN535K3 touchlist_sync.cgi os command injection
Vulnerability Description
A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/touchlist_sync.cgi. The manipulation of the argument IP leads to os command injection. The exploit has been disclosed to the public and may be used.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-2488
Credits & Attribution
No credits recorded in the NVD database.
References
More from WAVLINK
View All →Affected Vendor
WAVLINK
View all reports →