VYPR

NBR200V2

by Netcore

CVEs (10)

  • CVE-2026-101001CriSep 28, 2026
    risk 0.65cvss 10.0epss 0.03

    A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This impacts the function eval of the file /www/cgi-bin/network_tools of the component Web Management Interface. Such manipulation of the argument QUERY_STRING leads to os command injection. It is possible to…

  • CVE-2026-94097CriSep 21, 2026
    risk 0.65cvss 10.0epss 0.03

    A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affects an unknown part of the file /www/cgi-bin/network_tools of the component CGI Diagnostic Endpoint. This manipulation of the argument param/key/val causes command injection. Remote exploitation of…

  • CVE-2026-101002CriSep 28, 2026
    risk 0.64cvss 9.9epss 0.02

    A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. Affected is the function system of the file /usr/bin/network_tools of the component Tools Ping Handler. Performing a manipulation of the argument url results in os command injection. The attack can be…

  • CVE-2026-94101CriSep 21, 2026
    risk 0.64cvss 9.9epss 0.01

    A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246. The affected element is the function vlan_load_form_uci of the file /usr/bin/routerd. The manipulation of the argument wan_num leads to buffer overflow. It is possible to initiate the attack…

  • CVE-2026-94100CriSep 21, 2026
    risk 0.64cvss 9.9epss 0.01

    A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing a manipulation of the argument vlan_wanX.ports can lead to buffer overflow. The…

  • CVE-2026-94099CriSep 21, 2026
    risk 0.64cvss 9.9epss 0.02

    A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This issue affects some unknown processing of the file restore.cgi of the component Backup Restore. Performing a manipulation of the argument QUERY_STRING results in command injection. The attack is…

  • CVE-2026-94096CriSep 21, 2026
    risk 0.64cvss 9.9epss 0.02

    A vulnerability was found in Netcore NBR200V2 1.3.241127.071246. Affected by this issue is some unknown functionality of the file /usr/bin/network_tools of the component LAN IP Configuration Handler. The manipulation of the argument ipv4 results in command injection. The attack…

  • CVE-2026-94095CriSep 21, 2026
    risk 0.64cvss 9.9epss 0.02

    A vulnerability has been found in Netcore NBR200V2 1.3.241127.071246. Affected by this vulnerability is an unknown functionality of the file /usr/bin/network_tools of the component Traceroute Diagnostic Feature. The manipulation of the argument url leads to command injection.…

  • CVE-2026-94098CriSep 21, 2026
    risk 0.59cvss 9.1epss 0.02

    A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This vulnerability affects unknown code of the file /www/cgi-bin/upgrade of the component Firmware Upgrade CGI Endpoint. Such manipulation of the argument QUERY_STRING leads to command injection. The attack…

  • CVE-2025-5147MedMay 25, 2025
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in Netcore NBR1005GPEV2, NBR200V2 and B6V2 up to 20250508 and classified as critical. This issue affects the function tools_ping of the file /usr/bin/network_tools. The manipulation of the argument url leads to command injection. The attack may be…