SMC manufactures a focused line of small-business networking and storage devices, including the D3G0804 gateway and SMC8024L2 switch, where disclosed vulnerabilities center on authentication bypass, input validation, and cross-site scripting weaknesses typical of embedded management interfaces. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Smc over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-8087CRITICAL SMC Networks D3G0804W D3GNV5M-3.5.1.6.10_GA devices allow remote command execution by leveraging access to the Network Diagnostic Tools screen, as demonstrated by an admin login. T | Jan 27, 2020 | 9.8 | 32 | NO | NO |
CVE-2012-2974HIGH The web interface on the SMC SMC8024L2 switch allows remote attackers to bypass authentication and obtain administrative access via a direct request to a .html file under (1) statu | Jul 19, 2012 | 10.0 | 29 | NO | NO |
CVE-2020-7249MEDIUM SMC D3G0804W 3.5.2.5-LAT_GA devices allow XSS via the SSID field on the WiFi Network Configuration page (after a successful login to the admin account). | Jan 21, 2020 | 4.8 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Smc.
Media articles that mention a CVE ID that affects a product developed by Smc — matched by CVE ID, not by vendor name.