CVE-2012-2974: Smc SMC8024L2 Switch

High severity, CVSS 10.0. EPSS: 2.6% chance of exploitation in the next 30 days.

The web interface on the SMC SMC8024L2 switch allows remote attackers to bypass authentication and obtain administrative access via a direct request to a .html file under (1) status/, (2) system/, (3) ports/, (4) trunks/, (5) vlans/, (6) qos/, (7) rstp/, (8) dot1x/, (9) security/, (10) igmps/, or (11) snmp/.

Affected products

  • Smc SMC8024L2 Switch: any version

Published 2012-07-19. Last modified 2026-06-16.