VYPR

Tomato

by Shibby

CVEs (3)

  • CVE-2026-10124HigMay 30, 2026
    risk 0.57cvss 8.8epss 0.00

    A vulnerability was determined in Shibby Tomato up to 1.28. Affected is the function rip_zebra_read_ipv4 of the file /usr/sbin/ripd of the component Zserv Handler. Executing a manipulation can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The…

  • CVE-2026-10871HigJun 4, 2026
    risk 0.47cvss 7.2epss

    A vulnerability has been found in Shibby Tomato 1.28.0000. This vulnerability affects the function start_6rd_tunnel of the file /sbin/rc of the component Web UI. Such manipulation of the argument ipv6_6rd_borderrelay leads to os command injection. It is possible to launch the…

  • CVE-2026-10870HigJun 4, 2026
    risk 0.47cvss 7.2epss

    A flaw has been found in Shibby Tomato 1.28.0000. This affects the function start_dhcpc of the file /sbin/rc of the component Web UI. This manipulation causes os command injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.…