VYPR
Vendor

Dcnetworks

Products
5
CVEs
11
Across products
29
Status
Private

Products

5

Recent CVEs

11
  • CVE-2024-52782CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist_new.php.

  • CVE-2024-52781CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/tool/traceroute.php.

  • CVE-2024-52780CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/mgmt_edit.php.

  • CVE-2024-52779CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_top10.php.

  • CVE-2024-52778CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist.php.

  • CVE-2024-52777CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L, <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/license_update.php.

  • CVE-2024-51115CriNov 5, 2024
    risk 0.64cvss 9.8epss 0.02

    DCME-320 v7.4.12.90 was discovered to contain a command injection vulnerability.

  • CVE-2024-48659CriOct 21, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in DCME-320-L <=9.3.2.114 allows a remote attacker to execute arbitrary code via the log_u_umount.php component.

  • CVE-2023-43321HigOct 4, 2023
    risk 0.57cvss 8.8epss 0.01

    File Upload vulnerability in Digital China Networks DCFW-1800-SDC v.3.0 allows an authenticated attacker to execute arbitrary code via the wget function in the /sbin/cloudadmin.sh component.

  • CVE-2025-9387MedAug 24, 2025
    risk 0.42cvss 6.3epss 0.09

    A vulnerability was found in DCN DCME-720 9.1.5.11. This affects an unknown function of the file /usr/local/www/function/audit/newstatistics/ip_block.php of the component Web Management Backend. Performing manipulation of the argument ip results in os command injection. It is…

  • CVE-2026-2000MedFeb 6, 2026
    risk 0.32cvss 4.7epss 0.17

    A vulnerability was found in DCN DCME-320 up to 20260121. Impacted is the function apply_config of the file /function/system/basic/bridge_cfg.php of the component Web Management Backend. Performing a manipulation of the argument ip_list results in command injection. The attack…