CVE-2022-2488 | WAVLINK WN535K2/WN535K3 touchlist_sync.cgi IP os command injection
A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/touchlist_sync.cgi. The manipulation of the argument IP leads to os command injection.
The identification of this vulnerability is CVE-2022-2488. Access to the local network is required for this attack to succeed. Furthermore, there is an exploit available.