mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 08:48:00 +02:00
880 B
880 B
CVE-2020-13117
Description
Wavlink WN575A4, WN579X3, and WN530G3A devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request.
POC
Reference
- https://blog.0xlabs.com/2021/02/wavlink-rce-CVE-2020-13117.html
- https://github.com/ice-wzl/Wavlink-WN530G3A-Cmd-Injection/blob/main/README.md