CVE-2019-9974
11.04.2019, 19:29
diag_tool.cgi on DASAN H660RM GPON routers with firmware 1.03-0022 lacks any authorization check, which allows remote attackers to run a ping command via a GET request to enumerate LAN devices or crash the router with a DoS attack.Enginsight
Vendor | Product | Version |
---|---|---|
dasannetworks | h660rm_firmware | 1.03-0022 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References