CVE-2026-27520 – Binardat 10G08-0800GSM Network Switch Base64-encoded Password Stored in Cookie

CVE ID : CVE-2026-27520

Published : Feb. 24, 2026, 4:24 p.m. | 42 minutes ago

Description : Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 store a user password in a client-side cookie as a Base64-encoded value accessible via the web interface. Because Base64 is reversible and provides no confidentiality, an attacker who can access the cookie value can recover the plaintext password.

Severity: 8.7 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه