CRITICAL🇵🇱 Wersja polska

CVE-2024-21797

CVSS 9.1v3.1pub. 2025-01-14upd. 2025-08-21

A command execution vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

🤖 AI Analysis
How it works

The vulnerability affects the set_TR069() function in the adm.cgi file that handles the device's administrative panel. Sending an appropriately crafted HTTP request to this endpoint causes unverified commands to be executed at the operating system level of the device (command injection, CWE-74). Exploitation of the vulnerability requires authentication, but once obtained, the attacker can inject and execute arbitrary code without further restrictions. The vulnerability has scope that extends beyond the application context (Scope: Changed), which means the ability to affect resources outside the web application itself.

Impact

Successful exploitation of the vulnerability allows an attacker to gain full control over the device, including reading and modifying configuration data, persistent disruption of network services availability, and potential use of the router as an entry point to the local network.

Mitigation & patch

Patches available from the manufacturer should be applied in accordance with the references. Additionally, it is recommended to restrict access to the device's administrative panel exclusively to trusted IP addresses and to avoid exposing the management interface directly to the Internet.

Who is affected

Wavlink AC3000 M33A8, firmware version V5030.210505 (products: Wavlink WL-WN533A8 / WL-WN533A8 Firmware)

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
  • Wavlink Wl Wn533a8

    HW
    Wavlink
    all versions
  • Wavlink Wl Wn533a8 Firmware

    OS
    Wavlink
    m33a8.v5030.210505
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2024-34166CRITICAL10.0PL ✓same product

Command injection w firmware Wavlink AC3000 — zdalne wykonanie kodu

CVE-2024-34544CRITICAL9.1PL ✓same product

Command injection w Wavlink AC3000 – nieautoryzowane wykonanie poleceń

CVE-2024-36258CRITICAL10.0PL ✓same product

Stack-based buffer overflow w Wavlink AC3000 umożliwia RCE przez HTTP

CVE-2024-36272CRITICAL9.1PL ✓same product

Buffer overflow w Wavlink AC3000 — podatność w funkcji set_info() usbip.cgi

CVE-2024-36290CRITICAL10.0PL ✓same product

Buffer overflow w Wavlink AC3000 — podatność w login.cgi (Goto_chidx)