Belden Hisecos vulnerabilities
2 known vulnerabilities affecting belden/hisecos.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2023-53908HIGHCVSS 8.7v04.0.012025-12-17
CVE-2023-53908 [HIGH] CWE-269 CVE-2023-53908: HiSecOS 04.0.01 contains a privilege escalation vulnerability that allows authenticated users to mod
HiSecOS 04.0.01 contains a privilege escalation vulnerability that allows authenticated users to modify their access role through XML-based NETCONF configuration. Attackers can send crafted XML payloads to the /mops_data endpoint with a specific role value to elevate their user privileges to administrative level.
cvelistv5nvd
CVE-2021-27734CRITICALCVSS 9.8≥ 03.3.00, ≤ 03.5.012021-05-17
CVE-2021-27734 [CRITICAL] CWE-287 CVE-2021-27734: Hirschmann HiOS 07.1.01, 07.1.02, and 08.1.00 through 08.5.xx and HiSecOS 03.3.00 through 03.5.01 al
Hirschmann HiOS 07.1.01, 07.1.02, and 08.1.00 through 08.5.xx and HiSecOS 03.3.00 through 03.5.01 allow remote attackers to change the credentials of existing users.
nvd