CVE-2022-30926: Critical severity h3c magic r100 firmware vulnerability
Published Jun 8, 2022
·Updated
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the EditMacList parameter at /goform/aspForm.
Affected Software
2 affected components
H3C Magic R100 Firmware<=v100r005
H3C Magic R100
Event History
Jun 8, 2022
CVE Published
via MITRE·01:24 PM
Data Sourced
via MITRE·01:24 PM
Description
Frequently Asked Questions
1
What is CVE-2022-30926?
CVE-2022-30926 is a stack overflow vulnerability found in H3C Magic R100 R100V100R005 firmware.
2
What is the severity of CVE-2022-30926?
CVE-2022-30926 has a severity rating of 9.8 (Critical).
3
How does CVE-2022-30926 work?
CVE-2022-30926 exploits a stack overflow vulnerability via the EditMacList parameter at /goform/aspForm.
4
What software versions are affected by CVE-2022-30926?
H3C Magic R100 firmware up to and including v100r005 is affected by CVE-2022-30926.
5
How can I fix CVE-2022-30926?
To mitigate CVE-2022-30926, it is recommended to update the H3C Magic R100 firmware to a version that includes a fix for the vulnerability.