A vulnerability is in the 'mb_wifibasic.shtml' page of the Wavlink-WiFi-Repeater,Firmware package version RPTA2-77W.M4300.01.GD.2017Sep19,Visit the constructed page to get the Wi-Fi Basic Setting, and you can set the WiFi at the same time.
Unauthorized users can obtain the key information of the router by visiting:
http://xxx.xxx.xxx.xxx/mb_wifibasic.shtml
Wavlink-WiFi-Repeater
This page does not have access permissions set
Penwei.Huang

