harmonicinc CVE Vulnerabilities & CVE List (4)

Products (CPE): — CVEs: 4

harmonicinc vulnerability overview

Aggregates CVE and security vulnerability intelligence across all harmonicinc-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk path handling; exposure may include vendor impact file overwrite in vendor surface software deployment and vendor surface production workloads contexts.

Vulnerability distribution trend (last 24 months)

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-33477 In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special path. [email protected] 6.5 0.99% 2023-06-06 2025-01-08
CVE-2018-14943 Harmonic NSG 9000 devices have a default password of nsgadmin for the admin account, a default password of nsgguest for the guest account, and a default password of nsgconfig for the config account. [email protected] 9.8 0.30% 2018-08-05 2024-11-21
CVE-2018-14942 Harmonic NSG 9000 devices allow remote authenticated users to conduct directory traversal attacks, as demonstrated by "POST /PY/EMULATION_GET_FILE" or "POST /PY/EMULATION_EXPORT" with FileName=../../../passwd in the POST data. [email protected] 8.8 0.41% 2018-08-05 2024-11-21
CVE-2018-14941 Harmonic NSG 9000 devices allow remote authenticated users to read the webapp.py source code via a direct request for the /webapp.py URI. [email protected] 6.5 0.22% 2018-08-05 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence