Skip to content

Latest commit

 

History

History
29 lines (17 loc) · 829 Bytes

WAVLINK WN535 G3__check_live.md

File metadata and controls

29 lines (17 loc) · 829 Bytes

0x01 Vulnerability description

A vulnerability is in the 'live_check.shtml' page of the WAVLINK WN535 G3,Firmware package version M35G3R.V5030.180927

Unauthorized users can obtain the key information of the router by visiting:

http://xxx.xxx.xxx.xxx/live_check.shtml

0x02 Affected version

WAVLINK WN535 G3

0x03 Vulnerability

Under the live_check.shtml file, use the exec cmd function to execute the command

image-20220518145059172

0x04 PoC verification

image-20220523165219605

##0x05 Acknowledgement

PeiWen.Huang