An issue in BL-AC2100 V1.0.4 and before allows a remote attacker to execute arbitrary code via the enable parameter passed to /goform/set_hidessid_cfg is not handled properly.
Metrics
Affected Vendors & Products
References
History
Tue, 29 Apr 2025 14:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Lb-link
Lb-link bl-ac2100 Lb-link bl-ac2100 Firmware |
|
CPEs | cpe:2.3:h:lb-link:bl-ac2100:-:*:*:*:*:*:*:* cpe:2.3:o:lb-link:bl-ac2100_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Lb-link
Lb-link bl-ac2100 Lb-link bl-ac2100 Firmware |
Thu, 03 Apr 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-77 | |
Metrics |
cvssV3_1
|
Wed, 02 Apr 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue in BL-AC2100 V1.0.4 and before allows a remote attacker to execute arbitrary code via the enable parameter passed to /goform/set_hidessid_cfg is not handled properly. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-04-02T00:00:00.000Z
Updated: 2025-04-03T15:14:55.687Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-29063

Updated: 2025-04-03T15:13:21.548Z

Status : Analyzed
Published: 2025-04-02T21:15:32.583
Modified: 2025-04-29T13:38:03.320
Link: CVE-2025-29063

No data.