Peplink Security Advisory: Firmware 8.3.0 - Console Port Giving Root Acces (CVE-2023-49228).

Background
Recently, we have communicated with a security research lab that has informed us that they have found a vulnerability in Peplink firmware version 8.3.0. Details are below:

Console port giving root access (CVE-2023-49228)

  • The reference link can be found here.

Products
The vulnerability was identified in the Peplink Balance series with Console Port in the firmware version 8.3.0. The models without a Console Port are not affected by this vulnerability.

Solution
It has been fixed in the firmware version 8.4.0, which can be downloaded here.

Published: 2023-12-29

2 Likes