Vulnerabilities > Dasannetworks > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-04-11 | CVE-2019-9976 | Information Exposure Through Log Files vulnerability in Dasannetworks H660Rm Firmware 1.030022 The Boa server configuration on DASAN H660RM devices with firmware 1.03-0022 logs POST data to the /tmp/boa-temp file, which allows logged-in users to read the credentials of administration web interface users. | 8.8 |
2019-04-11 | CVE-2019-9975 | Use of Hard-coded Credentials vulnerability in Dasannetworks H660Rm Firmware 1.030022 DASAN H660RM devices with firmware 1.03-0022 use a hard-coded key for logs encryption. | 7.5 |
2018-10-01 | CVE-2018-17867 | OS Command Injection vulnerability in Dasannetworks H660Gw Firmware The Port Forwarding functionality on DASAN H660GW devices allows remote attackers to execute arbitrary code via shell metacharacters in the cgi-bin/adv_nat_virsvr.asp Addr parameter (aka the Local IP Address field). | 7.2 |