CVE-2023-27803: Medium severity h3c magic r100 firmware vulnerability
Published Apr 7, 2023
·Updated
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.
Affected Software
4 affected components
All of the following
H3C Magic R100 Firmware=v100r005
H3C Magic R100 Firmware
H3C Magic R100 Firmware=v100r005
H3C Magic R100 Firmware
Event History
Apr 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the CVE ID for this vulnerability?
The CVE ID for this vulnerability is CVE-2023-27803.
2
What is the affected software?
The affected software is H3C Magic R100 firmware v100r005.
3
What is the severity of CVE-2023-27803?
The severity of CVE-2023-27803 is medium with a CVSS score of 4.9.
4
What is the impact of CVE-2023-27803?
CVE-2023-27803 allows attackers to cause a Denial of Service (DoS) via a crafted payload.
5
Is there a fix available for CVE-2023-27803?
Currently, there is no available fix for CVE-2023-27803. It is recommended to follow vendor advisories for any updates or patches.