← Back

Garrettcom

garrettcom

5 CVEs • 4 products

Products (4)

Click to collapse
Toggle

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Garrettcom
2Magnum 10k Firmware
Magnum 6k Firmware
May 6, 2026
Aug 4, 2015
N/A· v4
N/A· v3
3.5 LOW· v2
The web-server component in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches allows remote authenticated users to cause a denial of service (memory corruption and reboot) via a crafted URL.
1Garrettcom
2Magnum 10k Firmware
Magnum 6k Firmware
May 6, 2026
Aug 4, 2015
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The firmware in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches uses hardcoded RSA private keys and certificates across different customers' installations, which makes it easier for remote attacke...Show more
The firmware in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches uses hardcoded RSA private keys and certificates across different customers' installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms for HTTPS sessions by leveraging knowledge of a private key from another installation.Show less
1Garrettcom
2Magnum 10k Firmware
Magnum 6k Firmware
May 6, 2026
Aug 4, 2015
N/A· v4
N/A· v3
7.2 HIGH· v2
The firmware in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches has a hardcoded serial-console password for a privileged account, which might allow physically proximate attackers to obtain access...Show more
The firmware in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches has a hardcoded serial-console password for a privileged account, which might allow physically proximate attackers to obtain access by establishing a console session to a nonstandard installation on which this account is enabled, and leveraging knowledge of this password.Show less
1Garrettcom
2Magnum 10k Firmware
Magnum 6k Firmware
May 6, 2026
Aug 4, 2015
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Multiple cross-site scripting (XSS) vulnerabilities in the web-server component in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches allow remote attackers to inject arbitrary web script or HTML via...Show more
Multiple cross-site scripting (XSS) vulnerabilities in the web-server component in MNS before 4.5.6 on Belden GarrettCom Magnum 6K and Magnum 10K switches allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.Show less
1Garrettcom
2Magnum Managed Networks Software 6k
Magnum Managed Networks Software 6k Secure
Apr 29, 2026
Sep 4, 2012
N/A· v4
N/A· v3
7.7 HIGH· v2
The Management Software application in GarrettCom Magnum MNS-6K before 4.4.0, and 14.x before 14.4.0, has a hardcoded password for an administrative account, which allows local users to gain privileges via unspecified ve...Show more
The Management Software application in GarrettCom Magnum MNS-6K before 4.4.0, and 14.x before 14.4.0, has a hardcoded password for an administrative account, which allows local users to gain privileges via unspecified vectors.Show less