CVE-2022-34598: Critical severity h3c magic r100 firmware vulnerability
Published Jul 6, 2022
·Updated
The udpserver in H3C Magic R100 V200R004 and V100R005 has the 9034 port opened, allowing attackers to execute arbitrary commands.
Affected Software
3 affected components
H3C Magic R100 Firmware=v100r005
H3C Magic R100 Firmware=v200r004
H3C Magic R100
Event History
Jul 6, 2022
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2022-34598.
2
What is the severity rating of CVE-2022-34598?
The severity rating of CVE-2022-34598 is critical, with a severity value of 9.8.
3
Which H3C Magic R100 firmware versions are affected by CVE-2022-34598?
The H3C Magic R100 firmware versions v100r005 and v200r004 are affected by CVE-2022-34598.
4
What is the impact of CVE-2022-34598?
CVE-2022-34598 allows attackers to execute arbitrary commands on the udpserver of H3C Magic R100, which can lead to unauthorized access and potential compromise of the device.
5
Is there a fix available for CVE-2022-34598?
The vendor has not released a fix or patch for CVE-2022-34598 yet. It is recommended to follow the vendor's security advisories for updates and mitigation steps.