VYPR

puma

by Axel Technology

CVEs (1)

  • CVE-2025-63221CriNov 19, 2025
    risk 0.59cvss 9.1epss 0.01

    The Axel Technology puma devices (firmware versions 0.8.5 to 1.0.3) are vulnerable to Broken Access Control due to missing authentication on the /cgi-bin/gstFcgi.fcgi endpoint. Unauthenticated remote attackers can list user accounts, create new administrative users, delete…