Vulnerabilities (CVE)

Filtered by vendor Peplink Subscribe
Filtered by product Balance Two Firmware
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-49229 1 Peplink 2 Balance Two, Balance Two Firmware 2024-01-04 N/A 4.3 MEDIUM
An issue was discovered in Peplink Balance Two before 8.4.0. A missing authorization check in the administration web service allows read-only, unprivileged users to obtain sensitive information about the device configuration.
CVE-2023-49228 1 Peplink 2 Balance Two, Balance Two Firmware 2024-01-04 N/A 6.4 MEDIUM
An issue was discovered in Peplink Balance Two before 8.4.0. Console port authentication uses hard-coded credentials, which allows an attacker with physical access and sufficient knowledge to execute arbitrary commands as root.