CVE-2025-63206
PoC —CVSS 3.1
9.8 critical
EPSS
<1%p43
Published
()
Modified
Description
An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.
- Vendors
- dasannetworks
- Products
- ds2924 firmware
- Weakness
- CWE-306
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.