Vulnerabilities > Peplink > Balance TWO Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-12-28 CVE-2023-49228 Use of Hard-coded Credentials vulnerability in Peplink Balance TWO Firmware 8.1.0
An issue was discovered in Peplink Balance Two before 8.4.0.
high complexity
peplink CWE-798
6.4
2023-12-28 CVE-2023-49229 Missing Authorization vulnerability in Peplink Balance TWO Firmware 8.1.0
An issue was discovered in Peplink Balance Two before 8.4.0.
network
low complexity
peplink CWE-862
4.3
2023-12-28 CVE-2023-49230 Missing Authorization vulnerability in Peplink Balance TWO Firmware 8.1.0
An issue was discovered in Peplink Balance Two before 8.4.0.
network
low complexity
peplink CWE-862
8.8
2023-12-25 CVE-2023-49226 Command Injection vulnerability in Peplink Balance TWO Firmware 8.1.0
An issue was discovered in Peplink Balance Two before 8.4.0.
network
low complexity
peplink CWE-77
7.2
2020-10-07 CVE-2020-24246 Unspecified vulnerability in Peplink products
Peplink Balance before 8.1.0rc1 allows an unauthenticated attacker to download PHP configuration files (/filemanager/php/connector.php) from Web Admin.
network
low complexity
peplink
5.0