Show filters
35 Total Results
Displaying 31-35 of 35
Sort by:
Attacker Value
Unknown

CVE-2017-6038

Disclosure Date: June 30, 2017 (last updated November 26, 2024)
A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests were provided by the user who submitted the request.
0
Attacker Value
Unknown

CVE-2017-6036

Disclosure Date: June 30, 2017 (last updated November 26, 2024)
A Server-Side Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web server receives a request, but does not sufficiently verify that the request is being sent to the expected destination.
0
Attacker Value
Unknown

CVE-2017-6040

Disclosure Date: June 30, 2017 (last updated November 26, 2024)
An Information Exposure issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. Non-sensitive information can be obtained anonymously.
0
Attacker Value
Unknown

CVE-2017-5163

Disclosure Date: February 13, 2017 (last updated November 26, 2024)
An issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. After an administrator downloads a configuration file, a copy of the configuration file, which includes hashes of user passwords, is saved to a location that is accessible without authentication by path traversal.
0
Attacker Value
Unknown

CVE-2016-2509

Disclosure Date: February 18, 2016 (last updated November 25, 2024)
The password-sync feature on Belden Hirschmann Classic Platform switches L2B before 05.3.07 and L2E, L2P, L3E, and L3P before 09.0.06 sets an SNMP community to the same string as the administrator password, which allows remote attackers to obtain sensitive information by sniffing the network.
0