Bl W1210m Firmware
by Lb Link
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-33375 | Cri | 0.64 | 9.8 | 0.01 | Jun 14, 2024 | LB-LINK BL-W1210M v2.0 was discovered to store user credentials in plaintext within the router's firmware. | ||
| CVE-2024-33377 | Hig | 0.53 | 8.1 | 0.00 | Jun 14, 2024 | LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page. | ||
| CVE-2024-33373 | Med | 0.41 | 6.3 | 0.00 | Jun 14, 2024 | An issue in the LB-LINK BL-W1210M v2.0 router allows attackers to bypass password complexity requirements and set single digit passwords for authentication. This vulnerability can allow attackers to access the router via a brute-force attack. |
- risk 0.64cvss 9.8epss 0.01
LB-LINK BL-W1210M v2.0 was discovered to store user credentials in plaintext within the router's firmware.
- risk 0.53cvss 8.1epss 0.00
LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page.
- risk 0.41cvss 6.3epss 0.00
An issue in the LB-LINK BL-W1210M v2.0 router allows attackers to bypass password complexity requirements and set single digit passwords for authentication. This vulnerability can allow attackers to access the router via a brute-force attack.