The Boa server configuration on DASAN H660RM devices with firmware 1.03-0022 logs POST data to the /tmp/boa-temp file, which allows logged-in users to read the credentials of administration web interface users.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-19330 The Boa server configuration on DASAN H660RM devices with firmware 1.03-0022 logs POST data to the /tmp/boa-temp file, which allows logged-in users to read the credentials of administration web interface users.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00314}

epss

{'score': 0.00298}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T22:10:08.653Z

Reserved: 2019-03-24T00:00:00

Link: CVE-2019-9976

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-11T19:29:01.630

Modified: 2024-11-21T04:52:43.043

Link: CVE-2019-9976

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.