Known Vulnerabilities for Max Br1 Classic by Peplink
Listed below are 1 of the newest known vulnerabilities associated with "Max Br1 Classic" by "Peplink".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Peplink Max Br1 Classic
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-82004 json | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command... | Not Provided | 2026-09-08 | 2026-09-11 |
| CVE-2026-81003 json | In the Linux kernel, the following vulnerability has been resolved: net/iucv: filter frames in afiucv_hs_rcv() by ingress de... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-80672 json | In the Linux kernel, the following vulnerability has been resolved: ntfs: fix u16 truncation of restart-area length check n... | Not Provided | 2026-08-28 | 2026-08-29 |
| CVE-2026-78321 json | The HTTP media server on DJI drones does not enforce sufficient limits on incoming connections or request rates. An attacker ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78306 json | DJI drones expose an unauthenticated DUML command interface over Bluetooth that allows an attacker within Bluetooth range to ... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78255 json | The HTTP media server running on DJI drones serves stored photos and videos through the `/v2` endpoint without authenticating... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78251 json | DJI drones contain an FTP service that uses hardcoded credentials shared across affected models and permits authenticated use... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-77812 json | DJI drones transmit DUML (DJI Universal Markup Language) protocol messages over BLE (Bluetooth Low Energy) without encryption... | Not Provided | 2026-08-21 | 2026-08-24 |
| CVE-2026-76197 json | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command... | Not Provided | 2026-08-25 | 2026-08-29 |
| CVE-2026-76195 json | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command... | Not Provided | 2026-08-25 | 2026-08-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Peplink | Max Br1 Classic | hw2-3 |