
L41KAA/CVE-2024-48705
Releases0
Stars2
Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while resetting the password. This vulnerability is specifically found within the "set_sys_adm" function of the "adm.cgi" binary, and is due to improper santization of the user provided "newpass" field.
Collections containing this project
Showing collections based on your access.
This project is not in any collections you can view.