Skip to main content

Vendor archive

peplink CVEs

Beta · best-effort

24 CVEs tagged to vendor peplink3 Critical, 12 High, 8 Medium, 1 Low, 0 Unrated.

CVE-2026-57920

Published Jun 26, 2026

Peplink InControl 2 through 2.14.2 before 2026-06-03 allows use of a semicolon to bypass access-control rules for certain /rest/o/{orgId} endpoints.

CVSS 7.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-8841

Published Jun 5, 2017

Arbitrary file deletion exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The…

CVSS 8.1 · High

CVE-2017-8840

Published Jun 5, 2017

Debug information disclosure exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093…

CVSS 5.3 · Medium

CVE-2017-8839

Published Jun 5, 2017

XSS via orig_url exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The affect…

CVSS 6.1 · Medium

CVE-2017-8838

Published Jun 5, 2017

XSS via syncid exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The affected…

CVSS 6.1 · Medium

CVE-2017-8837

Published Jun 5, 2017

Cleartext password storage exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093.…

CVSS 9.8 · Critical

CVE-2017-8836

Published Jun 5, 2017

CSRF exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The CGI scripts in the…

CVSS 8.8 · High

CVE-2017-8835

Published Jun 5, 2017

SQL injection exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. An attack vec…

CVSS 9.8 · Critical
Showing 1-24 of 24 CVEsPage 1 of 1