Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-30489 PoC — WAVLINK WN535 G3 跨站脚本漏洞

Source
Associated Vulnerability
Title:WAVLINK WN535 G3 跨站脚本漏洞 (CVE-2022-30489)
Description:WAVLINK WN535 G3是中国WAVLINK公司的一个无线路由器。 WAVLINK WN535 G3 存在安全漏洞,该漏洞源于/cgi-bin/login.cgi 中的主机名参数缺少过滤和转义,攻击者利用该漏洞可进行跨站脚本攻击。
Description
Wavlink WN-535G3 contains a POST cross-site scripting vulnerability via the hostname parameter at /cgi-bin/login.cgi.
File Snapshot

id: CVE-2022-30489 info: name: Wavlink WN-535G3 - Cross-Site Scripting author: For3stCo1d sev ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.