ZeroHour

CVE-2025-63206

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p43
Published
()
Modified
Description

An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

Vendors
dasannetworks
Products
ds2924 firmware
Weakness
CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.