CVE-2023-34924: High severity H3C Magic B1stw Firmware vulnerability
Published Jun 26, 2023
·Updated
H3C Magic B1STW B1STV100R012 was discovered to contain a stack overflow via the function SetAPInfoById. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Affected Software
4 affected components
H3C Magic B1stw Firmware=b1stv100r012
H3C Magic B1STW
All of the following
H3C Magic B1stw Firmware=b1stv100r012
H3C Magic B1STW
Event History
Jun 26, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-34924?
CVE-2023-34924 is a vulnerability in H3C Magic B1STW B1STV100R012 firmware that allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
2
How severe is CVE-2023-34924?
CVE-2023-34924 has a severity rating of 7.5, indicating a high level of severity.
3
How does CVE-2023-34924 affect H3C Magic B1STW devices?
CVE-2023-34924 affects H3C Magic B1STW devices running B1STV100R012 firmware.
4
What is the CWE-ID associated with CVE-2023-34924?
The CWE-ID associated with CVE-2023-34924 is CWE-787.
5
Is there a fix available for CVE-2023-34924?
Currently, there is no specific fix available for CVE-2023-34924. It is recommended to contact the vendor for any available patches or updates to mitigate the vulnerability.