CVE-2022-30918: Critical severity h3c magic r100 firmware vulnerability
Published Jun 8, 2022
·Updated
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the AspSetTelnet parameter at /goform/aspForm.
Affected Software
2 affected components
H3C Magic R100 Firmware<=v100r005
H3C Magic R100
Event History
Jun 8, 2022
CVE Published
via MITRE·01:23 PM
Data Sourced
via MITRE·01:23 PM
Description
Frequently Asked Questions
1
What is CVE-2022-30918?
CVE-2022-30918 is a stack overflow vulnerability discovered in H3C Magic R100 R100V100R005 firmware that can be exploited through the Asp_SetTelnet parameter at /goform/aspForm.
2
How severe is CVE-2022-30918?
CVE-2022-30918 has a severity score of 9.8 out of 10, making it a critical vulnerability.
3
What software is affected by CVE-2022-30918?
H3C Magic R100 firmware version v100r005 is affected by CVE-2022-30918.
4
How can CVE-2022-30918 be exploited?
CVE-2022-30918 can be exploited by sending a malicious payload through the Asp_SetTelnet parameter at /goform/aspForm.
5
Is there a fix for CVE-2022-30918?
At the moment, there is no official fix available for CVE-2022-30918. It is recommended to follow the vendor's security advisories for any updates or patches.