Vulnerabilities > CVE-2022-48166 - Missing Authorization vulnerability in Wavlink Wl-Wn530Hg4 Firmware M30Hg4.V5030.201217

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
wavlink
CWE-862

Summary

An access control issue in Wavlink WL-WN530HG4 M30HG4.V5030.201217 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.

Vulnerable Configurations

Part Description Count
OS
Wavlink
1
Hardware
Wavlink
1

Common Weakness Enumeration (CWE)