PT-2025-35570 · Wavlink · Wavlink Wn535G3

Summermu

·

Published

2025-09-02

·

Updated

2025-09-02

·

CVE-2025-50755

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Wavlink WN535K3 version 20191010
Description The Wavlink WN535K3 router contains a command injection vulnerability in the set sys cmd function through the command parameter. This allows attackers to execute arbitrary commands via a crafted request.
Recommendations As a temporary workaround, consider disabling the set sys cmd function until a patch is available.

Exploit

Fix

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-50755

Affected Products

Wavlink Wn535G3