Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
410053.2%CRITICAL

Related CVEs

10
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2026-2000A vulnerability was found in DCN DCME-320 up to 20260121. Impacted is the function apply_config of the file /function/system/basic/bridge_cfg.php of the component Web Management Backend. Performing a manipulation of the argument ip_list results in command injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.LOW2.096.1%Feb 6, 2026
CVE-2025-9387A vulnerability was found in DCN DCME-720 9.1.5.11. This affects an unknown function of the file /usr/local/www/function/audit/newstatistics/ip_block.php of the component Web Management Backend. Performing manipulation of the argument ip results in os command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used. Other products might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way.LOW2.194.7%Aug 24, 2025
CVE-2024-52782DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist_new.php.CRITICAL9.848.2%Nov 29, 2024
CVE-2024-52781DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/tool/traceroute.php.CRITICAL9.848.2%Nov 29, 2024
CVE-2024-52780DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/mgmt_edit.php.CRITICAL9.848.2%Nov 29, 2024
CVE-2024-52779DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_top10.php.CRITICAL9.848.2%Nov 29, 2024
CVE-2024-52778DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist.php.CRITICAL9.848.2%Nov 29, 2024
CVE-2024-52777DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L, <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/license_update.php.CRITICAL9.849.7%Nov 29, 2024
CVE-2024-51115DCME-320 v7.4.12.90 was discovered to contain a command injection vulnerability.CRITICAL9.874.0%Nov 5, 2024
CVE-2024-48659An issue in DCME-320-L <=9.3.2.114 allows a remote attacker to execute arbitrary code via the log_u_umount.php component.CRITICAL9.861.5%Oct 21, 2024