SMC Networks SMC8024L2 Switch Web interface Authentication Bypass Vulnerability
Release date:
Updated on:
Affected Systems:
SMC SMC8024L2
Description:
--------------------------------------------------------------------------------
Bugtraq id: 54390
Cve id: CVE-2012-2974
SMC8024L2 is a multi-function 10/100/1000BASE-T independently managed switch.
The SMC Networks SMC8024L2 switch has a Remote Authentication Bypass Vulnerability. Attackers can exploit this vulnerability to illegally access all configuration pages of affected devices.
<* Source: Elio Torrisi
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
SMC
---
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.smc.com/