VYPR
Vendor

Hillstonenet

Products
6
CVEs
3
Across products
6
Status
Private

Products

6

Recent CVEs

3
  • CVE-2024-8073CriAug 26, 2024
    risk 0.64cvss 9.8epss 0.01

    Improper Input Validation vulnerability in Hillstone Networks Hillstone Networks Web Application Firewall on 5.5R6 allows Command Injection.This issue affects Hillstone Networks Web Application Firewall: from 5.5R6-2.6.7 through 5.5R6-2.8.13.

  • CVE-2022-45778CriDec 27, 2022
    risk 0.64cvss 9.8epss 0.01

    https://www.hillstonenet.com.cn/ Hillstone Firewall SG-6000 <= 5.0.4.0 is vulnerable to Incorrect Access Control. There is a permission bypass vulnerability in the Hillstone WEB application firewall. An attacker can enter the background of the firewall with super administrator…

  • CVE-2023-46964MedNov 5, 2023
    risk 0.40cvss 6.1epss 0.01

    Cross Site Scripting (XSS) vulnerability in Hillstone Next Generation FireWall SG-6000-e3960 v.5.5 allows a remote attacker to execute arbitrary code via the use front-end filtering instead of back-end filtering.