CVE-2022-34047 is an access control vulnerability in Wavlink WN530HG4 M30HG4.V5030.191116 firmware that allows unauthorized attackers to retrieve sensitive login credentials. This vulnerability, rated 7.5 HIGH on the CVSS scale, permits remote attackers to obtain usernames and passwords with low complexity and no user interaction, leading to a high impact on confidentiality. While not actively exploited in the wild or on the CISA KEV catalog, public exploit code is available via ExploitDB and Nuclei templates, indicating a readily exploitable weakness. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
m30hg4.v5030.191116CPE matchmatch criteria | cpe:2.3:o:wavlink:wl-wn530hg4_firmware:m30hg4.v5030.191116:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.