VYPR

HI3120

by Hitron

CVEs (2)

  • CVE-2025-66963MedDec 15, 2025
    risk 0.36cvss 5.5epss 0.00

    An issue in Hitron HI3120 v.7.2.4.5.2b1 allows a local attacker to obtain sensitive information via the Logout option in the index.html

  • CVE-2025-63354MedFeb 9, 2026
    risk 0.31cvss 4.8epss 0.00

    Hitron HI3120 v7.2.4.5.2b1 allows stored XSS via the Parental Control option when creating a new filter. The device fails to properly handle inputs, allowing an attacker to inject and execute JavaScript.