CVE-2022-37085: Critical severity h3c h200 vulnerability
Published Aug 25, 2022
·Updated
H3C H200 H200V100R004 was discovered to contain a stack overflow via the AddWlanMacList function.
Affected Software
2 affected components
H3C H200 Firmware=h200v100r004
H3C H200
Event History
Aug 25, 2022
CVE Published
via MITRE·02:03 PM
Data Sourced
via MITRE·02:03 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-37085?
CVE-2022-37085 has a critical severity due to the stack overflow that can lead to remote code execution.
2
How do I fix CVE-2022-37085?
The recommended fix for CVE-2022-37085 is to apply the latest firmware update provided by H3C for the affected models.
3
What systems are affected by CVE-2022-37085?
CVE-2022-37085 affects the H3C H200 firmware version H200V100R004.
4
What is the impact of exploiting CVE-2022-37085?
Exploiting CVE-2022-37085 can allow an attacker to execute arbitrary code on the vulnerable system.
5
Is CVE-2022-37085 still exploitable if I am using an unaffected version of H3C H200?
If you are using a version of H3C H200 that is not specifically H200V100R004, then CVE-2022-37085 should not be exploitable.