Wavlink WN575A4 and WN579X3 devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request.
Software | From | Fixed in |
---|---|---|
wavlink / wn575a4_firmware | - | 2020-05-15.x |
wavlink / wn579x3_firmware | - | 2020-05-15.x |