CVE-2019-19942: Swisscom Centro Business
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
Missing output sanitation in Swisscom Centro Grande Centro Grande before 6.16.12, Centro Business 1.0 (ADB) before 7.10.18, and Centro Business 2.0 before 8.02.04 allows a remote attacker to perform DNS spoofing against the web interface via crafted hostnames in DHCP requests.
Affected products
- Swisscom Centro Business: from 1.0, before 7.10.18 (fixed in 7.10.18); from 2.0, before 8.02.04 (fixed in 8.02.04)
- Swisscom Centro Grande Firmware: before 6.14.06 (fixed in 6.14.06)
Published 2020-03-16. Last modified 2026-06-17.