An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the system key information and execute arbitrary commands via accessing the page syslog.shtml.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/pghuanghui/CVE_Request/blob/main/WiFi-Repeater/WiFi-Repeater_syslog.shtml.assets/WiFi-Repeater_syslog.shtml.md | Exploit Third Party Advisory | 
| https://www.wavlink.com/en_us/category/REPEATER.html | Product Vendor Advisory | 
| https://github.com/pghuanghui/CVE_Request/blob/main/WiFi-Repeater/WiFi-Repeater_syslog.shtml.assets/WiFi-Repeater_syslog.shtml.md | Exploit Third Party Advisory | 
| https://www.wavlink.com/en_us/category/REPEATER.html | Product Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 07:09
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/pghuanghui/CVE_Request/blob/main/WiFi-Repeater/WiFi-Repeater_syslog.shtml.assets/WiFi-Repeater_syslog.shtml.md - Exploit, Third Party Advisory | |
| References | () https://www.wavlink.com/en_us/category/REPEATER.html - Product, Vendor Advisory | 
08 Aug 2023, 14:22
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-425 | 
Information
                Published : 2022-07-25 22:15
Updated : 2024-11-21 07:09
NVD link : CVE-2022-34571
Mitre link : CVE-2022-34571
CVE.ORG link : CVE-2022-34571
JSON object : View
Products Affected
                wavlink
- wifi-repeater_firmware
CWE
                
                    
                        
                        CWE-425
                        
            Direct Request ('Forced Browsing')
