CVE-2018-6020: Silextechnology Geh-500 Firmware
Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.
In Silex SX-500 all versions and GE MobileLink(GEH-500) version 1.54 and prior, authentication is not verified when making certain POST requests, which may allow attackers to modify system settings.
Affected products
- Silextechnology Geh-500 Firmware: up to and including 1.54
- Silextechnology Geh-Sd-320an Firmware: up to and including geh-1.1
- Silextechnology Sd-320an Firmware: up to and including 2.01
- Silextechnology Sx-500 Firmware: affected versions not specified
Published 2018-05-09. Last modified 2026-06-17.