Dasannetworks

    Dashboard / Vendors

    Products: 13
    Vulnerabilities: 10
    Known Exploited: 0
    7
    Critical Level Threats
    3
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-63206

    An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

    Last Modified: Dec 31, 2025
    Published: Nov 19, 2025

    CVE-2023-42495

    Dasan Networks - W-Web versions 1.22-1.27 - CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

    Last Modified: Nov 21, 2024
    Published: Dec 13, 2023

    CVE-2019-9976

    The Boa server configuration on DASAN H660RM devices with firmware 1.03-0022 logs POST data to the /tmp/boa-temp file, which allows logged-in users to read the credentials of administration web interface users.

    Last Modified: Nov 21, 2024
    Published: Apr 11, 2019

    CVE-2019-9975

    DASAN H660RM devices with firmware 1.03-0022 use a hard-coded key for logs encryption. Data stored using this key can be decrypted by anyone able to access this key.

    Last Modified: Nov 21, 2024
    Published: Apr 11, 2019

    CVE-2019-9974

    diag_tool.cgi on DASAN H660RM GPON routers with firmware 1.03-0022 lacks any authorization check, which allows remote attackers to run a ping command via a GET request to enumerate LAN devices or crash the router with a DoS attack.

    Last Modified: Nov 21, 2024
    Published: Apr 11, 2019
    Items Per Page
    Dasannetworks Vulnerabilities & Security CVEs | CVE-DB