S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2022-2487 Scanner

CVE-2022-2487 scanner - Command Injection vulnerability in  WAVLINK WN535K2 and WN535K3

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.6k
Times Used
continuous scan runs
5.5k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-2487
9.8
CVSShigh
Exploitable from an adjacent network · low-privilege account sufficient.

A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/nightled.cgi. The manipulation of the argument start_hour leads to os command injection. The exploit has been disclosed to the public and may be used.

Attack Vector
Adjacent
Privileges Req.
Low
User Interaction
None
Affected
WN535K2by WAVLINK
n/a
WN535K3by WAVLINK
n/a
Updated Aug 22, 2026View on NVD →
Detail

WAVLINK WN535K2 and WN535K3 are wireless routers used for home and small business networks. They provide high-speed internet access, Wi-Fi connectivity, and secure network connections. These routers are designed to offer reliable and fast networking capabilities to meet the demands of modern-day users. The WAVLINK WN535K2 and WN535K3 routers are equipped with advanced technologies, such as IPv6, 802.11ac Wi-Fi, and WPA/WPA2 wireless security protocols, to deliver top-of-the-line performance.

However, a critical vulnerability has been detected in the unknown code of the WAVLINK WN535K2 and WN535K3 routers. Specifically, the vulnerability is present in the file /cgi-bin/nightled.cgi, and is classified as CVE-2022-2487. The vulnerability allows unauthenticated attackers to inject OS commands by manipulating the argument start_hour. This vulnerability can lead to the execution of arbitrary commands on the router, allowing an attacker to take control of the device and potentially the entire network.

When the CVE-2022-2487 vulnerability is exploited, it can lead to serious consequences for the users of the WAVLINK WN535K2 and WN535K3 routers. Attackers can gain unauthorized access to sensitive data, steal important information such as login credentials, and even launch attacks on other devices on the network. This can lead to financial loss, business disruption, and reputational damage for individuals and companies alike.

In conclusion, the WAVLINK WN535K2 and WN535K3 routers have a critical vulnerability that poses a serious threat to their users. However, with the right precautions, users can protect their networks from potential attacks. s4e.io provides pro features that help users easily and quickly learn about vulnerabilities in their digital assets, empowering them to take action and secure their networks.

 

REFERENCES

Solution Advice

To protect against this vulnerability, users can take the following precautions:

  • Update the router firmware to the latest version as soon as possible
  • Disable remote access to the router control panel
  • Use strong and unique passwords for router login credentials
  • Regularly monitor network activity and look for any suspicious behavior
  • Enable network segmentation to restrict access to sensitive information and devices

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.