Wavlink WN575A4, WN579X3, and WN530G3A devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request.

Subscriptions

Vendors Products
Wavlink Subscribe
Wn575a4 Subscribe
Wn575a4 Firmware Subscribe
Wn579x3 Subscribe
Wn579x3 Firmware Subscribe

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 19 Aug 2025 13:45:00 +0000

Type Values Removed Values Added
Description Wavlink WN575A4 and WN579X3 devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request. Wavlink WN575A4, WN579X3, and WN530G3A devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-08-19T13:24:22.716Z

Reserved: 2020-05-16T00:00:00.000Z

Link: CVE-2020-13117

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-02-09T19:15:13.460

Modified: 2025-08-19T14:15:36.030

Link: CVE-2020-13117

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses