VYPR
Vendor

Multilaser

Products
14
CVEs
9
Across products
23
Status
Private

Products

14

Recent CVEs

9
  • CVE-2023-38944CriMar 6, 2024
    risk 0.65cvss 9.8epss 0.16

    An issue in Multilaser RE160V firmware v12.03.01.09_pt and Multilaser RE163V firmware v12.03.01.10_pt allows attackers to bypass the access control and gain complete access to the application via modifying a HTTP header.

  • CVE-2023-38945CriMar 6, 2024
    risk 0.64cvss 9.8epss 0.01

    Multilaser RE160 v5.07.51_pt_MTL01 and v5.07.52_pt_MTL01, Multilaser RE160V v12.03.01.08_pt and V12.03.01.09_pt, and Multilaser RE163V v12.03.01.08_pt allows attackers to bypass the access control and gain complete access to the application via supplying a crafted URL.

  • CVE-2021-31152HigApr 14, 2021
    risk 0.61cvss 8.8epss 0.04

    Multilaser Router AC1200 V02.03.01.45_pt contains a cross-site request forgery (CSRF) vulnerability. An attacker can enable remote access, change passwords, and perform other actions through misconfigured requests, entries, and headers.

  • CVE-2023-38946HigMar 6, 2024
    risk 0.57cvss 8.8epss 0.01

    An issue in Multilaser RE160 firmware v5.07.51_pt_MTL01 and v5.07.52_pt_MTL01 allows attackers to bypass the access control and gain complete access to the application via supplying a crafted cookie.

  • CVE-2023-36146MedJun 30, 2023
    risk 0.35cvss 5.4epss 0.00

    A Stored Cross-Site Scripting (XSS) vulnerability was found in Multilaser RE 170 using firmware 2.2.6733.

  • CVE-2023-0658MedFeb 3, 2023
    risk 0.35cvss 5.3epss 0.01

    A vulnerability, which was classified as critical, was found in Multilaser RE057 and RE170 2.1/2.2. This affects an unknown part of the file /param.file.tgz of the component Backup File Handler. The manipulation leads to information disclosure. It is possible to initiate the…

  • CVE-2023-0029MedJan 1, 2023
    risk 0.35cvss 5.3epss 0.01

    A vulnerability was found in Multilaser RE708 RE1200R4GC-2T2R-V3_v3411b_MUL029B. It has been rated as problematic. This issue affects some unknown processing of the component Telnet Service. The manipulation leads to denial of service. The attack may be initiated remotely. The…

  • CVE-2025-5437MedJun 2, 2025
    risk 0.34cvss 5.3epss 0.00

    A vulnerability classified as critical has been found in Multilaser Sirius RE016 MLT1.0. Affected is an unknown function of the file /cgi-bin/cstecgi.cgi of the component Password Change Handler. The manipulation leads to improper authentication. It is possible to launch the…

  • CVE-2025-5436MedJun 2, 2025
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was found in Multilaser Sirius RE016 MLT1.0. It has been rated as problematic. This issue affects some unknown processing of the file /cgi-bin/cstecgi.cgi. The manipulation leads to information disclosure. The attack may be initiated remotely. The exploit has…