216.73.217.22

CVE-2017-20234

· Published 03/04/2026 23:17 · Modified 03/04/2026 23:17

Labels: CVE-2017-20234 2026-04-03CVE-2017-20234CWE-798[email protected]

Essential information

Published
03/04/2026 23:17
Modified
03/04/2026 23:17
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

GarrettCom Magnum 6K and 10K managed switches contain an authentication bypass vulnerability that allows unauthenticated attackers to gain unauthorized access by exploiting a hardcoded string in the authentication mechanism. Attackers can bypass login controls to access administrative functions and sensitive switch configuration without valid credentials.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
garrettcom / magnum 6k cpe:2.3:a:garrettcom:magnum_6k:*:*:*:*:*:*:*:*
garrettcom / magnum 10k cpe:2.3:a:garrettcom:magnum_10k:*:*:*:*:*:*:*:*

References