Description
Wavlink WN535K3 20191010 was found to contain a command injection vulnerability in the set_sys_adm function via the username parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.
References
github.com/...Wavlink_WN535K3/set_sys_adm_username/readme.md