CVE-2012-2974

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
19/07/2012
Last modified:
11/04/2025

Description

The web interface on the SMC SMC8024L2 switch allows remote attackers to bypass authentication and obtain administrative access via a direct request to a .html file under (1) status/, (2) system/, (3) ports/, (4) trunks/, (5) vlans/, (6) qos/, (7) rstp/, (8) dot1x/, (9) security/, (10) igmps/, or (11) snmp/.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:smc:smc8024l2_switch:*:*:*:*:*:*:*:*