← Back

Harmonicinc

harmonicinc

4 CVEs • 4 products

Products (4)

Click to collapse
Toggle

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Harmonicinc
1Nsg 9000 6g Firmware
Jun 17, 2026
Jun 6, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special path.
1Harmonicinc
1Nsg 9000 Firmware
Nov 21, 2024
Aug 5, 2018
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Harmonic NSG 9000 devices have a default password of nsgadmin for the admin account, a default password of nsgguest for the guest account, and a default password of nsgconfig for the config account.
1Harmonicinc
1Nsg 9000 Firmware
Nov 21, 2024
Aug 5, 2018
N/A· v4
8.8 HIGH· v3
4.0 MEDIUM· v2
Harmonic NSG 9000 devices allow remote authenticated users to conduct directory traversal attacks, as demonstrated by "POST /PY/EMULATION_GET_FILE" or "POST /PY/EMULATION_EXPORT" with FileName=../../../passwd in the POST...Show more
Harmonic NSG 9000 devices allow remote authenticated users to conduct directory traversal attacks, as demonstrated by "POST /PY/EMULATION_GET_FILE" or "POST /PY/EMULATION_EXPORT" with FileName=../../../passwd in the POST data.Show less
1Harmonicinc
1Nsg 9000
Nov 21, 2024
Aug 5, 2018
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
Harmonic NSG 9000 devices allow remote authenticated users to read the webapp.py source code via a direct request for the /webapp.py URI.