VYPR

Management Console SG560

by Snapgear

CVEs (2)

  • CVE-2020-36909MedJan 6, 2026
    risk 0.42cvss 6.5epss 0.01

    SnapGear Management Console SG560 3.1.5 contains a file manipulation vulnerability that allows authenticated users to read, write, and delete files using the edit_config_files CGI script. Attackers can manipulate POST request parameters in /cgi-bin/cgix/edit_config_files to…

  • CVE-2020-36908MedJan 6, 2026
    risk 0.34cvss 5.3epss 0.00

    SnapGear Management Console SG560 version 3.1.5 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft a malicious web page that automatically submits a form to create a new super user…