VYPR

F1 V2 Firmware

by Totolink

CVEs (2)

  • CVE-2015-9551CriNov 24, 2020
    risk 0.64cvss 9.8epss 0.04

    An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. There is Remote Code Execution in the management interface via the formSysCmd sysCmd parameter.

  • CVE-2015-9550HigNov 24, 2020
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. By sending a specific hel,xasf packet to the WAN interface, it is possible to open the web management interface on the WAN interface.