Stig's Lab Notes
  • Wavlink Command Injection - CVE-2022-23900

    An unauthenticated command injection in the Wavlink WL-WN531P3 router API, exploitable from the internet via CSRF.

    April 5, 2022 - 4 minute read -
    Firmware Research IoT

© 2026 Stig's Lab Notes. Built with Chalk.