VYPR

AC2100

by BL

CVEs (2)

  • CVE-2025-29062Apr 2, 2025
    risk 0.01cvss epss 0.14

    An issue in BL-AC2100 <=V1.0.4 allows a remote attacker to execute arbitrary code via the time1 and time2 parameters in the set_LimitClient_cfg of the goahead webservice.

  • CVE-2025-29063Apr 2, 2025
    risk 0.00cvss epss 0.06

    An issue in BL-AC2100 V1.0.4 and before allows a remote attacker to execute arbitrary code via the enable parameter passed to /goform/set_hidessid_cfg is not handled properly.