A vulnerability was found in Wavlink AC3000 M33A8.V5030.210505 and classified as very critical. This issue affects the function set_sys_init of the file login.cgi. The manipulation of the argument restart_hour_value leads to command injection.

The identification of this vulnerability is CVE-2024-39759. The attack may be initiated remotely. There is no exploit available.