VYPR

Multi-User Gateway for VIP System

by Comelit

CVEs (2)

  • CVE-2026-80275HigOct 1, 2026
    risk 0.57cvss 8.8epss —

    Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 fail to enforce server-side authorization on an administrative password-change function. An authenticated user level can invoke this function to overwrite the installer (administrator)…

  • CVE-2026-80276HigOct 1, 2026
    risk 0.49cvss 7.5epss —

    Comelit Multi-User Gateway for VIP System (model 1456B) firmware versions 2.9.1 and 2.10.0 expose a network-accessible management interface that does not require authentication. Through this interface, sensitive device configuration data - including the Remote Configuration…