First published: Fri Apr 07 2023(Updated: )
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditSTList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
H3c Magic R100 Firmware | =v100r005 | |
H3c Magic R100 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-27805.
The H3C Magic R100 firmware version v100r005 is affected by this vulnerability.
CVE-2023-27805 has a severity rating of 4.9 (medium).
An attacker can exploit this vulnerability by sending a crafted payload through the EditSTList interface at /goform/aspForm, leading to a stack overflow and causing a Denial of Service (DoS) condition.
At the moment, there is no specific fix available for CVE-2023-27805. It is recommended to monitor the vendor's website for any security updates or patches.