Multiple external config control vulnerabilities exist in the nas.cgi set_nas() proftpd functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to permission bypass. An attacker can make an authenticated HTTP request to trigger these vulnerabilities.A configuration injection vulnerability exists in the `ftp_name` POST parameter.

Sicehice


Sicehice automates the collection of cyber threat intelligence from over 30 sources and enables users to search against the collected IPs. It is possible that there will be false positives in our dataset. We are a small group that cannot vet all indicators gathered on an hourly basis.

Listed: