← Back to browse · API

CVE-2022-2486

Severity
HIGH
CVSS
8.0
EPSS
0.29763
Risk score
42.42
CISA KEV
No
PoC
No
Published
2022-07-20
Modified
2025-04-15
First seen
2026-08-07
Aliases
EUVD-2022-34745, GHSA-C8QM-JMPW-Q7P3
Products
WAVLINK:WN535K2 n/a, WAVLINK:WN535K3 n/a
Sources
euvd EUVD-2022-34745

Description

A vulnerability, which was classified as critical, was found in WAVLINK WN535K2 and WN535K3. This affects an unknown part of the file /cgi-bin/mesh.cgi?page=upgrade. The manipulation of the argument key leads to os command injection. The exploit has been disclosed to the public and may be used.

References