Skip to content
Noroxi

LB-LINK records

18 published records for vendor lb-link.

All records

18 records
  • CVE-2023-26801
    60This week

    LB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL-LTE300 v1.0.8 were discovered to contain a com

    CriticalCVSS 9.8No exploitEPSS 70%

    lb-link · bl-lte300 firmwareMar 26, 2023

  • An issue in BL-AC2100 <=V1.0.4 allows a remote attacker to execute arbitrary code via the time1 and time2 parameters in the set_LimitClient_

    CriticalCVSS 9.8No exploitEPSS 1%

    lb-link · bl-ac2100 firmwareApr 2, 2025

  • An issue in BL-AC2100 V1.0.4 and before allows a remote attacker to execute arbitrary code via the enable parameter passed to /goform/set_hi

    CriticalCVSS 9.8No exploitEPSS 1%

    lb-link · bl-ac2100 firmwareApr 2, 2025

  • LB-LINK BL-W1210M v2.0 was discovered to store user credentials in plaintext within the router's firmware.

    CriticalCVSS 9.8No exploitEPSS 1%

    lb-link · bl-w1210m firmwareJun 14, 2024

  • LB-LINK BL-WR 1300H v.1.0.4 contains hardcoded credentials stored in /etc/shadow which are easily guessable.

    CriticalCVSS 9.8No exploitEPSS 1%

    lb-link · bl-wr1300h firmwareNov 1, 2024

  • The LB-Link BL-CPE300M AX300 4G LTE Router firmware version BL-R8800_B10_ALK_SL_V01.01.02P42U14_06 does not implement proper session handlin

    HighCVSS 8.8No exploitEPSS 0%

    lb-link · bl-cpe300m firmwareSep 9, 2025

  • LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page.

    HighCVSS 8.1No exploitEPSS 0%

    lb-link · bl-w1210m firmwareJun 14, 2024

  • B-Link BL-AC2100 Web Management set_delshrpath_cfg delshrpath stack-based overflow

    HighCVSS 7.4No exploitEPSS 4%

    lb-link · bl-ac2100 firmwareSep 21, 2025

  • CVE-2026-4226
    29Monitor

    LB-LINK BL-WR9000 get_virtual_cfg sub_44E8D0 stack-based overflow

    HighCVSS 7.4No exploitEPSS 1%

    lb-link · bl-wr9000 firmwareMar 16, 2026

  • CVE-2026-4227
    29Monitor

    LB-LINK BL-WR9000 get_hidessid_cfg sub_44D844 buffer overflow

    HighCVSS 7.4No exploitEPSS 1%

    lb-link · bl-wr9000 firmwareMar 16, 2026

  • CVE-2025-7564
    28Monitor

    LB-LINK BL-AC3600 shadow hard-coded credentials

    HighCVSS 7.1No exploitEPSS 0%

    lb-link · bl-ac3600 firmwareJul 13, 2025

  • CVE-2025-1610
    25Monitor

    LB-LINK AC1900 Router set_blacklist websGetVar os command injection

    MediumCVSS 5.3No exploitEPSS 13%

    lb-link · ac1900 firmwareFeb 23, 2025

  • An issue in the LB-LINK BL-W1210M v2.0 router allows attackers to bypass password complexity requirements and set single digit passwords for

    MediumCVSS 6.3No exploitEPSS 0%

    lb-link · bl-w1210m firmwareJun 14, 2024

  • CVE-2025-1609
    24Monitor

    LB-LINK AC1900 Router set_cmd websGetVar os command injection

    MediumCVSS 5.3No exploitEPSS 10%

    lb-link · ac1900 firmwareFeb 23, 2025

  • CVE-2025-1608
    24Monitor

    LB-LINK AC1900 Router set_manpwd websGetVar os command injection

    MediumCVSS 5.3No exploitEPSS 10%

    lb-link · ac1900 firmwareFeb 23, 2025

  • CVE-2025-7565
    22Monitor

    LB-LINK BL-AC3600 Web Management Interface lighttpd.cgi geteasycfg information disclosure

    MediumCVSS 5.5No exploitEPSS 1%

    lb-link · bl-ac3600 firmwareJul 14, 2025

  • CVE-2026-4228
    11Monitor

    LB-LINK BL-WR9000 set_wifi sub_458754 command injection

    LowCVSS 2.1No exploitEPSS 9%

    lb-link · bl-wr9000 firmwareMar 16, 2026

  • CVE-2025-9580
    10Monitor

    LB-LINK BL-X26 HTTP set_blacklist os command injection

    LowCVSS 2.1No exploitEPSS 7%

    lb-link · bl-x26 firmwareAug 28, 2025