Known Vulnerabilities
CVE-2022-46143
Affected devices do not check the TFTP blocksize correctly. This could allow an authenticated attacker to read from an uninitialized buffer that potentially contains previously allocated data.
LOW
CVSS 2.7
Published Dec 13, 2022
CVE-2020-28400
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial of service condition. The vulnerability can be triggered if a large amount of DCP reset packets are sent to the device.
HIGH
CVSS 7.5
Published Jul 13, 2021