<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 05:12:28 +0000</lastBuildDate>
    <item>
      <title>CVE-2022-40622 — WAVLINK Quantum D4G (WN531G3) Session Management by IP Address</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2022-40622</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; WAVLINK WN531G3&lt;/p&gt;
&lt;p&gt;The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 uses IP addresses to hold sessions and does not not use session tokens. Therefore, if an attacker changes their IP address to match the logged-in administrator&amp;#39;s, or is behind the same NAT as the logged in administrator, session takeover is possible.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; WAVLINK WN531G3&lt;/p&gt;
&lt;p&gt;The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 uses IP addresses to hold sessions and does not not use session tokens. Therefore, if an attacker changes their IP address to match the logged-in administrator&amp;#39;s, or is behind the same NAT as the logged in administrator, session takeover is possible.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2022-40622</guid>
    </item>
  </channel>
</rss>
