CVE-2023-32612:

0.0 CVSS

Description

Client-side enforcement of server-side security issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow an attacker with an administrative privilege to execute OS commands with the root privilege.

Classification

CVE ID: CVE-2023-32612

CVSS Base Severity: LOW

CVSS Base Score: 0.0

Affected Products

Vendor: WAVLINK TECHNOLOGY Ltd.

Product: WL-WN531AX2

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.1% (probability of being exploited)

EPSS Percentile: 43.64% (scored less or equal to compared to others)

EPSS Date: 2025-02-03 (when was this score calculated)

References

https://www.wavlink.com/en_us/firmware/details/932108ffc5.html
https://jvn.jp/en/jp/JVN78634340/

Timeline