Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qxjj-2j7h-cqh2

Опубликовано: 19 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

EPSS

Процентиль: 39%
0.00176
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

EPSS

Процентиль: 39%
0.00176
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-306