Description
The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 does not utilize anti-CSRF tokens, which, when combined with other issues (such as CVE-2022-35518), can lead to remote, unauthenticated command execution.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-43897 | The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 does not utilize anti-CSRF tokens, which, when combined with other issues (such as CVE-2022-35518), can lead to remote, unauthenticated command execution. |
References
| Link | Providers |
|---|---|
| https://youtu.be/cSileV8YbsQ?t=1028 |
|
History
No history.
Status: PUBLISHED
Assigner: rapid7
Published:
Updated: 2024-09-17T04:25:38.938Z
Reserved: 2022-09-12T00:00:00.000Z
Link: CVE-2022-40623
No data.
Status : Modified
Published: 2022-09-13T21:15:10.253
Modified: 2024-11-21T07:21:43.923
Link: CVE-2022-40623
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD