CVE-2022-36498: High severity h3c magic nx18 plus vulnerability
Published Aug 25, 2022
·Updated
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function AspSetTimingtimeWifiAndLed.
Affected Software
2 affected components
H3C Magic Nx18 Plus Firmware=nx18pv100r003
H3C Magic NX18 Plus
Event History
Aug 25, 2022
CVE Published
via MITRE·01:56 PM
Data Sourced
via MITRE·01:56 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-36498?
CVE-2022-36498 has been classified as a critical severity vulnerability due to its potential to cause stack overflow.
2
How do I fix CVE-2022-36498?
To fix CVE-2022-36498, you should update the H3C Magic NX18 Plus firmware to the latest version provided by H3C.
3
What systems are affected by CVE-2022-36498?
CVE-2022-36498 affects H3C Magic NX18 Plus devices running NX18PV100R003 firmware.
4
What is the attack vector for CVE-2022-36498?
CVE-2022-36498 can be exploited remotely by sending specially crafted inputs to the Asp_SetTimingtimeWifiAndLed function.
5
What are the potential consequences of exploiting CVE-2022-36498?
Exploiting CVE-2022-36498 may lead to denial of service or arbitrary code execution on the affected device.