Server-side Security Vulnerability in WL-WN531AX2 Firmware by Wavlink
CVE-2023-32612
7.2HIGH
What is CVE-2023-32612?
A vulnerability exists in the WL-WN531AX2 firmware that allows an attacker with administrative privileges to execute OS commands with root access. This weakness is a result of improper enforcement of server-side security checks on the client side, enabling unauthorized command execution that could lead to a full compromise of the device. Users are advised to update their firmware to the latest version (2023526 or later) to mitigate this risk.
Affected Version(s)
WL-WN531AX2 firmware versions prior to 2023526
