Hiby R3 PRO firmware v1.5 to v1.7 was discovered to contain a file upload vulnerability via the file upload feature.
hiby:hiby_r3_pro_firmware hiby:hiby_r3_pro_saber_firmware