← Back to browse · API

CVE-2022-2488

Severity
HIGH
CVSS
8.0
EPSS
0.32947
Risk score
43.53
CISA KEV
No
PoC
No
Published
2022-07-20
Modified
2025-04-15
First seen
2026-08-07
Aliases
EUVD-2022-34747, GHSA-628R-386P-MRWH
Products
WAVLINK:WN535K2 n/a, WAVLINK:WN535K3 n/a
Sources
euvd EUVD-2022-34747

Description

A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/touchlist_sync.cgi. The manipulation of the argument IP leads to os command injection. The exploit has been disclosed to the public and may be used.

References