Claus Overbeck
7 exploits
Active since Jun 2017
Peplink Balance Firmware - Unauthenticated Sensitive Information Exposure via HASync Debug Endpoint
CVSS 5.3
Peplink Balance 305 380 580 710 1350 2500 Firmware - Cross-Site Scripting via orig_url Parameter
CVSS 6.1
Peplink Balance 305 380 580 710 1350 2500 Firmware - Cross-Site Scripting via syncid Parameter
CVSS 6.1
Peplink Balance Firmware Cleartext Password Storage in /etc/waipass and /etc/roapass
CVSS 9.8
Peplink Balance 305, 380, 580, 710, 1350, and 2500 Firmware - Cross-Site Request Forgery in Administrative CGI Scripts
CVSS 8.8
Peplink Balance 305, 380, 580, 710, 1350, and 2500 Firmware < 7.0.1-build2093 - SQL Injection via bauth Cookie
CVSS 9.8
Peplink Balance 305 380 580 710 1350 2500 Firmware - Arbitrary File Deletion via upfile.path Parameter
CVSS 8.1