← Back

Hillstonenet

hillstonenet

3 CVEs • 11 products

Products (11)

Click to collapse
Toggle

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hillstonenet
1Web Application Firewall
Sep 12, 2024
Aug 26, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Improper Input Validation vulnerability in Hillstone Networks Hillstone Networks Web Application Firewall on 5.5R6 allows Command Injection.This issue affects Hillstone Networks Web Application Firewall: from 5.5R6-2.6.7...Show more
Improper Input Validation vulnerability in Hillstone Networks Hillstone Networks Web Application Firewall on 5.5R6 allows Command Injection.This issue affects Hillstone Networks Web Application Firewall: from 5.5R6-2.6.7 through 5.5R6-2.8.13.Show less
1Hillstonenet
1Sc 6000 E3960 Firmware
Nov 21, 2024
Nov 5, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Cross Site Scripting (XSS) vulnerability in Hillstone Next Generation FireWall SG-6000-e3960 v.5.5 allows a remote attacker to execute arbitrary code via the use front-end filtering instead of back-end filtering.
1Hillstonenet
4Sc 6000 Wv02 Firmware
Sc 6000 Wv04 FirmwareSc 6000 Wv08 Firmware+1 more
Apr 14, 2025
Dec 27, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
https://www.hillstonenet.com.cn/ Hillstone Firewall SG-6000 <= 5.0.4.0 is vulnerable to Incorrect Access Control. There is a permission bypass vulnerability in the Hillstone WEB application firewall. An attacker can ente...Show more
https://www.hillstonenet.com.cn/ Hillstone Firewall SG-6000 <= 5.0.4.0 is vulnerable to Incorrect Access Control. There is a permission bypass vulnerability in the Hillstone WEB application firewall. An attacker can enter the background of the firewall with super administrator privileges through a configuration error in report.m.Show less