Products: 119
    Vulnerabilities: 24
    Known Exploited: 0
    3
    Critical Level Threats
    12
    High Level Threats
    8
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-57920

    Access Control Bypass via Semicolon Injection in Peplink InControl 2

    Last Modified: Jun 29, 2026
    Published: Jun 26, 2026

    CVE-2023-43491

    An information disclosure vulnerability exists in the web interface /cgi-bin/debug_dump.cgi functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted HTTP request can lead to a disclosure of sensitive information. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.

    Last Modified: Nov 04, 2025
    Published: Apr 17, 2024

    CVE-2023-45209

    An information disclosure vulnerability exists in the web interface /cgi-bin/download_config.cgi functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted HTTP request can lead to a disclosure of sensitive information. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.

    Last Modified: Nov 04, 2025
    Published: Apr 17, 2024

    CVE-2023-45744

    A data integrity vulnerability exists in the web interface /cgi-bin/upload_config.cgi functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted HTTP request can lead to configuration modification. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.

    Last Modified: Nov 04, 2025
    Published: Apr 17, 2024

    CVE-2023-39367

    An OS command injection vulnerability exists in the web interface mac2name functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Last Modified: Nov 04, 2025
    Published: Apr 17, 2024
    Items Per Page