CVE-2020-12107: Stengg Vpncrypt m10 Firmware

Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.

The Web portal of the WiFi module of VPNCrypt M10 2.6.5 allows command injection via a text field, which allow full control over this module's Operating System.

Affected products

  • Stengg Vpncrypt m10 Firmware: version 2.6.5 only

Published 2020-08-12. Last modified 2026-06-17.