VYPR

NL1902

by Netcomm

CVEs (2)

  • CVE-2022-4873CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.07

    On Netcomm router models NF20MESH, NF20, and NL1902 a stack based buffer overflow affects the sessionKey parameter. By providing a specific number of bytes, the instruction pointer is able to be overwritten on the stack and crashes the application at a known location.

  • CVE-2022-4874HigJan 11, 2023
    risk 0.50cvss 7.5epss 0.11

    Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an unauthenticated user to access content. In order to serve static content, the application performs a check for the existence of specific characters in the URL (.css, .png etc). If it exists, it…