14Oca
CVE-2024-39798 | Wavlink AC3000 M33A8.V5030.210505 openvpn.cgi openvpn_server_setup sel_open_protocol external control of system or configuration setting (TALOS-2024-2050)
A vulnerability, which was classified as critical, was found in Wavlink AC3000 M33A8.V5030.210505. Affected is the functionopenvpn_server_setup
of the file openvpn.cgi. The manipulation of the argument sel_open_protocol leads to external control of system or configuration setting.
This vulnerability is traded as CVE-2024-39798. It is possible to launch the attack remotely. There is no exploit available.