Cross-site Scripting Vulnerability in Wavlink Products
CVE-2020-10972
7.5HIGH
What is CVE-2020-10972?
A security vulnerability exists in Wavlink wireless devices that exposes the current administrator password in plain text within the source code of a specific page. This page can be accessed without authentication, allowing potential attackers to view sensitive information. Devices affected by this vulnerability include the Wavlink WN530HG4, WN531G3, and WN572HG3, posing a serious risk to network security and administrator accounts.