S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Misconfiguration·Updated Nov 20, 2024

CVE-2022-48166 Scanner

CVE-2022-48166 Scanner - Information Disclosure vulnerability in Wavlink WL-WN530HG4 Firmware

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.3k
Times Used
continuous scan runs
5.9k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-48166
7.5
CVSShigh
Exploitable remotely over the internet · no authentication required.

An access control issue in Wavlink WL-WN530HG4 M30HG4.V5030.201217 allows unauthenticated attackers to download configuration data and log files and obtain admin credentials.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Wavlink WL-WN530HG4 is a widely used router firmware for managing wireless internet access in residential and small business settings. It provides efficient networking with built-in administrative tools for configuration. The firmware is used by system administrators and tech enthusiasts to optimize wireless connectivity. However, improper configurations in certain versions can expose sensitive data. Ensuring the security of such firmware is critical for preventing unauthorized access and protecting user data.

This vulnerability allows unauthenticated attackers to download sensitive configuration files and log files from affected systems. These files may contain critical information such as admin credentials and network settings. The flaw stems from inadequate access control in the firmware. Exploiting this vulnerability can lead to unauthorized access and further compromise of the network.

The vulnerability exists in the ExportLogs.sh endpoint of the Wavlink WL-WN530HG4 firmware. This endpoint allows unauthenticated users to download files containing sensitive information, such as login credentials and WiFi settings. The issue arises due to insufficient validation checks for access permissions. Attackers can exploit this endpoint using crafted HTTP requests. The response from the server includes log data and configuration information, exposing critical details to attackers.

Possible Effects:

  • Exposure of admin credentials and WiFi configurations.
  • Unauthorized access to the router's administrative interface.
  • Potential misuse of network resources for malicious purposes.
  • Increased vulnerability to further attacks, such as ransomware or network infiltration.
  • Loss of data confidentiality and integrity within the network.

With the Security for Everyone platform, protect your digital assets by identifying and addressing vulnerabilities like CVE-2022-48166. Our platform empowers users with continuous monitoring, actionable insights, and in-depth reports to enhance security posture. Benefit from a user-friendly interface and access to a wide range of security checks. Join a community dedicated to proactive cybersecurity and take control of your system’s defenses. Start securing your network today with our comprehensive scanning solutions!

References:

Solution Advice
  • Upgrade the firmware to a version that resolves the vulnerability.
  • Restrict access to sensitive endpoints like ExportLogs.sh to authorized users only.
  • Enable strong authentication mechanisms for administrative access.
  • Regularly monitor and review logs to detect unauthorized access attempts.
  • Conduct periodic vulnerability assessments to identify and patch other potential flaws.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2022-48166 Scanner - Information Disclosure vulnerability in Wavlink WL-WN530HG4 Firmware | S4E