CVE-2020-36907

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
06/01/2026
Last modified:
06/01/2026

Description

Aerohive HiveOS contains a denial of service vulnerability in the NetConfig UI that allows unauthenticated attackers to render the web interface unusable. Attackers can send a crafted HTTP request to the action.php5 script with specific parameters to trigger a 5-minute service disruption.