VYPR

NF20

by Netcomm

CVEs (2)

  • CVE-2022-4873Jan 11, 2023
    risk 0.00cvss epss 0.07

    On Netcomm router models NF20MESH, NF20, and NL1902 a stack based buffer overflow affects the sessionKey parameter. By providing a specific number of bytes, the instruction pointer is able to be overwritten on the stack and crashes the application at a known location.

  • CVE-2022-4874Jan 11, 2023
    risk 0.00cvss epss 0.11

    Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an unauthenticated user to access content. In order to serve static content, the application performs a check for the existence of specific characters in the URL (.css, .png etc). If it exists, it…