← Back

CVE-2025-63206

nvd nist
Published: Nov 19, 2025Modified: Dec 31, 2025

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

Affected (2)

1 product
Ds2924 Firmware
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Dasannetworks
Version 1.01.18
Version 1.02.00
Running on/withPlatform Versions
Dasannetworks
Ds2924
All versions

Timeline

No history available yet.