VYPR

BL-W1210M

by Lb Link

CVEs (4)

  • CVE-2024-33374CriJun 14, 2024
    risk 0.64cvss 9.8epss 0.00

    Incorrect access control in the UART/Serial interface on the LB-LINK BL-W1210M v2.0 router allows attackers to access the root terminal without authentication.

  • CVE-2024-33375Jun 14, 2024
    risk 0.00cvss epss 0.00

    LB-LINK BL-W1210M v2.0 was discovered to store user credentials in plaintext within the router's firmware.

  • CVE-2024-33373Jun 14, 2024
    risk 0.00cvss epss 0.00

    An issue in the LB-LINK BL-W1210M v2.0 router allows attackers to bypass password complexity requirements and set single digit passwords for authentication. This vulnerability can allow attackers to access the router via a brute-force attack.

  • CVE-2024-33377Jun 14, 2024
    risk 0.00cvss epss 0.00

    LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page.