Vulnerabilities > SMC

DATE CVE VULNERABILITY TITLE RISK
2020-01-27 CVE-2020-8087 Improper Input Validation vulnerability in SMC D3G0804W Firmware D3Gnv5M3.5.1.6.10Ga
SMC Networks D3G0804W D3GNV5M-3.5.1.6.10_GA devices allow remote command execution by leveraging access to the Network Diagnostic Tools screen, as demonstrated by an admin login.
network
low complexity
smc CWE-20
critical
9.8
2020-01-21 CVE-2020-7249 Cross-site Scripting vulnerability in SMC D3G0804 Firmware 3.5.2.5Latga
SMC D3G0804W 3.5.2.5-LAT_GA devices allow XSS via the SSID field on the WiFi Network Configuration page (after a successful login to the admin account).
network
low complexity
smc CWE-79
4.8