Vulnerability Details CVE-2025-63206
An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.8%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2025-63206
-
cpe:2.3:h:dasannetworks:ds2924:-
-
cpe:2.3:o:dasannetworks:ds2924_firmware:1.01.18
-
cpe:2.3:o:dasannetworks:ds2924_firmware:1.02.00