Multiple OS command injection vulnerabilities exist in the internet.cgi set_add_routing() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger these vulnerabilities.A command injection vulnerability exists in the `dest` POST parameter.

Bleeping Computer


A premier destination for computer users of all skill levels to learn how to use and receive support for their computer.

Highlights

  • The latest news covers a wide range of topics, such as threats, vulnerabilities, and more.
  • The news is updated daily.
Listed: