Vulnerabilities > SMC

DATE CVE VULNERABILITY TITLE RISK
2020-01-27 CVE-2020-8087 Unspecified vulnerability in SMC D3G0804W Firmware D3Gnv5M3.5.1.6.10Ga
SMC Networks D3G0804W D3GNV5M-3.5.1.6.10_GA devices allow remote command execution by leveraging access to the Network Diagnostic Tools screen, as demonstrated by an admin login.
network
low complexity
smc
critical
10.0
2020-01-21 CVE-2020-7249 Cross-site Scripting vulnerability in SMC D3G0804 Firmware 3.5.2.5Latga
SMC D3G0804W 3.5.2.5-LAT_GA devices allow XSS via the SSID field on the WiFi Network Configuration page (after a successful login to the admin account).
network
smc CWE-79
3.5
2012-07-19 CVE-2012-2974 Improper Authentication vulnerability in SMC Smc8024L2 Switch
The web interface on the SMC SMC8024L2 switch allows remote attackers to bypass authentication and obtain administrative access via a direct request to a .html file under (1) status/, (2) system/, (3) ports/, (4) trunks/, (5) vlans/, (6) qos/, (7) rstp/, (8) dot1x/, (9) security/, (10) igmps/, or (11) snmp/.
network
low complexity
smc CWE-287
critical
10.0