First published: Fri Apr 07 2023(Updated: )
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
H3c Magic R100 Firmware | =v100r005 | |
H3c Magic R100 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27810 is a vulnerability found in H3C Magic R100 R100V100R005.bin firmware that allows attackers to cause a Denial of Service (DoS) via a crafted payload.
CVE-2023-27810 has a severity rating of 4.9 (medium).
H3C Magic R100 firmware v100r005 is affected by CVE-2023-27810.
CVE-2023-27810 can be exploited by attackers through the ipqos_lanip_editlist interface at /goform/aspForm.
Yes, it is recommended to update the H3C Magic R100 firmware to a version that is not vulnerable to CVE-2023-27810.