İçeriğe atla
Noroxi

Peplink kayıtları

peplink üreticisine ait 24 yayımlanmış kayıt.

Tüm kayıtlar

24 kayıt
  • CVE-2017-8835
    57Planlayın

    SQL injection exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350

    KritikCVSS 9,8SilahlaştırılmışEPSS %62

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2017-8837
    40Planlayın

    Cleartext password storage exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw

    KritikCVSS 9,8Kavram kanıtıEPSS %5

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2023-39367
    39İzleyin

    An OS command injection vulnerability exists in the web interface mac2name functionality of Peplink Smart Reader v1.2.0 (in QEMU).

    YüksekCVSS 7,2İstismar yokEPSS %38

    peplink · smart reader firmware17 Nis 2024

  • CVE-2023-40146
    39İzleyin

    A privilege escalation vulnerability exists in the /bin/login functionality of Peplink Smart Reader v1.2.0 (in QEMU).

    KritikCVSS 9,8İstismar yokEPSS %1

    peplink · smart reader firmware17 Nis 2024

  • CVE-2023-28381
    37İzleyin

    An OS command injection vulnerability exists in the admin.cgi MVPN_trial_init functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU).

    YüksekCVSS 8,8İstismar yokEPSS %6

    peplink · surf soho firmware11 Eki 2023

  • CVE-2023-27380
    37İzleyin

    An OS command injection vulnerability exists in the admin.cgi USSD_send functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU).

    YüksekCVSS 8,8İstismar yokEPSS %6

    peplink · surf soho firmware11 Eki 2023

  • CVE-2023-35193
    37İzleyin

    An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU).

    YüksekCVSS 8,8İstismar yokEPSS %6

    peplink · surf soho firmware11 Eki 2023

  • CVE-2023-35194
    37İzleyin

    An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU).

    YüksekCVSS 8,8İstismar yokEPSS %6

    peplink · surf soho firmware11 Eki 2023

  • CVE-2023-34356
    37İzleyin

    An OS command injection vulnerability exists in the data.cgi xfer_dns functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU).

    YüksekCVSS 8,8İstismar yokEPSS %6

    peplink · surf soho firmware11 Eki 2023

  • CVE-2023-49230
    36İzleyin

    An issue was discovered in Peplink Balance Two before 8.4.0.

    YüksekCVSS 8,8Kavram kanıtıEPSS %2

    peplink · balance two firmware28 Ara 2023

  • CVE-2017-8836
    36İzleyin

    CSRF exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-

    YüksekCVSS 8,8Kavram kanıtıEPSS %2

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2023-45744
    35İzleyin

    A data integrity vulnerability exists in the web interface /cgi-bin/upload_config.cgi functionality of Peplink Smart Reader v1.2.0 (in QEMU)

    YüksekCVSS 8,8İstismar yokEPSS %1

    peplink · smart reader firmware17 Nis 2024

  • CVE-2017-8841
    33İzleyin

    Arbitrary file deletion exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_7

    YüksekCVSS 8,1Kavram kanıtıEPSS %4

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2023-43491
    30İzleyin

    An information disclosure vulnerability exists in the web interface /cgi-bin/debug_dump.cgi functionality of Peplink Smart Reader v1.2.0 (in

    YüksekCVSS 7,5İstismar yokEPSS %1

    peplink · smart reader firmware17 Nis 2024

  • CVE-2023-45209
    30İzleyin

    An information disclosure vulnerability exists in the web interface /cgi-bin/download_config.cgi functionality of Peplink Smart Reader v1.2.

    YüksekCVSS 7,5İstismar yokEPSS %1

    peplink · smart reader firmware17 Nis 2024

  • CVE-2020-24246
    30İzleyin

    Peplink Balance before 8.1.0rc1 allows an unauthenticated attacker to download PHP configuration files (/filemanager/php/connector.php) from

    YüksekCVSS 7,5İstismar yokEPSS %1

    peplink · balance 20x firmware7 Eki 2020

  • CVE-2026-57920
    30İzleyin

    Peplink InControl 2 through 2.14.2 before 2026-06-03 allows use of a semicolon to bypass access-control rules for certain /rest/o/{orgId} en

    YüksekCVSS 7,7İstismar yokEPSS %0

    peplink · intcontrol 226 Haz 2026

  • CVE-2023-49226
    29İzleyin

    An issue was discovered in Peplink Balance Two before 8.4.0.

    YüksekCVSS 7,2İstismar yokEPSS %3

    peplink · balance two firmware25 Ara 2023

  • CVE-2017-8838
    25İzleyin

    XSS via syncid exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_135

    OrtaCVSS 6,1Kavram kanıtıEPSS %2

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2017-8839
    25İzleyin

    XSS via orig_url exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1

    OrtaCVSS 6,1Kavram kanıtıEPSS %2

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2023-49228
    25İzleyin

    An issue was discovered in Peplink Balance Two before 8.4.0.

    OrtaCVSS 6,4İstismar yokEPSS %0

    peplink · balance two firmware28 Ara 2023

  • CVE-2017-8840
    22İzleyin

    Debug information disclosure exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580

    OrtaCVSS 5,3Kavram kanıtıEPSS %4

    peplink · b305hw2 firmware5 Haz 2017

  • CVE-2023-34354
    21İzleyin

    A stored cross-site scripting (XSS) vulnerability exists in the upload_brand.cgi functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU).

    OrtaCVSS 5,4İstismar yokEPSS %1

    peplink · surf soho firmware11 Eki 2023

  • CVE-2023-49229
    17İzleyin

    An issue was discovered in Peplink Balance Two before 8.4.0.

    OrtaCVSS 4,3İstismar yokEPSS %0

    peplink · balance two firmware28 Ara 2023