S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2022-34047 Scanner

CVE-2022-34047 scanner - Information Disclosure vulnerability in Wavlink WN530HG4

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.1k
Times Used
continuous scan runs
5.9k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-34047
7.5
CVSS

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/set_safety.shtml?r=52300 and searching for [var syspasswd].

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

The Wavlink WN530HG4 is a wireless router manufactured by Wavlink. It is designed to provide high-speed internet connectivity to homes and small offices. This router is known for its 4 high-gain antennas that provide a stable and reliable wireless network. Moreover, this product is equipped with four 10/100Mbps Ethernet LAN ports, one 10/100Mbps Ethernet WAN port, and one USB 2.0 port, offering users the flexibility to connect multiple devices to the network.

Recently, a security vulnerability, CVE-2022-34047, was discovered in the Wavlink WN530HG4. The vulnerability allows attackers to obtain usernames and passwords by accessing a specific web page, view-source:http://IP_ADDRESS/set_safety.shtml?r=52300, and searching for "[var syspasswd]". It is important to note that this vulnerability is present in the M30HG4.V5030.191116 firmware version of the router.

If successfully exploited, the CVE-2022-34047 vulnerability can have serious consequences. Attackers can gain access to sensitive information such as usernames and passwords, which can be used for unauthorized access to personal and corporate accounts. Moreover, the attackers can control and manipulate the router's settings, compromising the entire network's security.

In conclusion, security vulnerabilities can be damaging to digital assets, leading to data breaches and financial losses. Therefore, it is crucial to stay informed about potential threats and take measures to protect against them. s4e.io is a platform that provides Pro features to help users learn about vulnerabilities in their digital assets quickly and easily. Sign up now to leverage its benefits and protect your network from security threats.

 

REFERENCES

Solution Advice

As a precautionary measure, the following steps can be taken to protect against the CVE-2022-34047 vulnerability:

  • Update the firmware of the Wavlink WN530HG4 router to the latest version.
  • Disable remote access to the router's settings portal.
  • Change the default username and password of the router.
  • Use a strong and complex password that includes a combination of uppercase and lowercase letters, numbers, and symbols.
  • Regularly monitor network traffic to detect suspicious activity.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2022-34047 scanner - Information Disclosure vulnerability in Wavlink WN530HG4 | S4E