GarrettCom Magnum 6K and 10K managed switches contain an authentication bypass vulnerability that allows unauthenticated attackers to gain unauthorized access by exploiting a hardcoded string in the authentication mechanism. Attackers can bypass login controls to access administrative functions and sensitive switch configuration without valid credentials.
Metrics
Affected Vendors & Products
References
History
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Belden
Belden garrettcom Magnum 6k And 10k Managed Switches |
|
| Vendors & Products |
Belden
Belden garrettcom Magnum 6k And 10k Managed Switches |
Mon, 06 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 03 Apr 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | GarrettCom Magnum 6K and 10K managed switches contain an authentication bypass vulnerability that allows unauthenticated attackers to gain unauthorized access by exploiting a hardcoded string in the authentication mechanism. Attackers can bypass login controls to access administrative functions and sensitive switch configuration without valid credentials. | |
| Title | GarrettCom Magnum 6K and 10K Authentication Bypass via Hardcoded String | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-04-03T22:49:58.377Z
Updated: 2026-04-06T18:06:07.651Z
Reserved: 2026-04-03T18:00:44.958Z
Link: CVE-2017-20234
Updated: 2026-04-06T18:05:39.085Z
Status : Awaiting Analysis
Published: 2026-04-03T23:17:00.087
Modified: 2026-04-07T13:20:55.200
Link: CVE-2017-20234
No data.
ReportizFlow