NBase switches NH208 and NH215 run a TFTP server which allows remote attackers to send software updates to modify the switch or cause a denial of service (crash) by guessing the target filenames, which have default names.
https://euvd.enisa.europa.eu/vulnerability/EUVD-1999-1402
http://www.securityfocus.com/bid/212