Back to search
CVE-2019-9974
Published: Apr 11, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
diag_tool.cgi on DASAN H660RM GPON routers with firmware 1.03-0022 lacks any authorization check, which allows remote attackers to run a ping command via a GET request to enumerate LAN devices or crash the router with a DoS attack.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20190326 Multiple vulnerabilities in DASAN H660RM GPON router firmware
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now