CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
COMPLETE
AV:N/AC:L/Au:S/C:N/I:P/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
42.2%
Arbitrary file deletion exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The attack methodology is absolute path traversal in cgi-bin/MANGA/firmware_process.cgi via the upfile.path parameter.
Vendor | Product | Version | CPE |
---|---|---|---|
peplink | b305hw2_firmware | 7.0.1 | cpe:2.3:o:peplink:b305hw2_firmware:7.0.1:*:*:*:*:*:*:* |
peplink | balance_305 | - | cpe:2.3:h:peplink:balance_305:-:*:*:*:*:*:*:* |
peplink | 380hw6_firmware | 7.0.1 | cpe:2.3:o:peplink:380hw6_firmware:7.0.1:*:*:*:*:*:*:* |
peplink | balance_380 | - | cpe:2.3:h:peplink:balance_380:-:*:*:*:*:*:*:* |
peplink | 580hw2_firmware | 7.0.1 | cpe:2.3:o:peplink:580hw2_firmware:7.0.1:*:*:*:*:*:*:* |
peplink | balance_580 | - | cpe:2.3:h:peplink:balance_580:-:*:*:*:*:*:*:* |
peplink | 710hw3_firmware | 7.0.1 | cpe:2.3:o:peplink:710hw3_firmware:7.0.1:*:*:*:*:*:*:* |
peplink | balance_710 | - | cpe:2.3:h:peplink:balance_710:-:*:*:*:*:*:*:* |
peplink | 1350hw2_firmware | 7.0.1 | cpe:2.3:o:peplink:1350hw2_firmware:7.0.1:*:*:*:*:*:*:* |
peplink | balance_1350 | - | cpe:2.3:h:peplink:balance_1350:-:*:*:*:*:*:*:* |
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
COMPLETE
AV:N/AC:L/Au:S/C:N/I:P/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
42.2%