CVE-2023-34928: High severity H3C Magic B1st Firmware vulnerability
Published Jun 28, 2023
·Updated
A stack overflow in the EditBasicSSID function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Affected Software
4 affected components
H3C Magic B1st Firmware=100r012
H3C Magic B1ST
All of the following
H3C Magic B1st Firmware=100r012
H3C Magic B1ST
Event History
Jun 28, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2023-34928.
2
What is the severity of CVE-2023-34928?
The severity of CVE-2023-34928 is high with a score of 7.5.
3
What is affected by CVE-2023-34928?
H3C Magic B1STV100R012 firmware version 100r012 is affected by CVE-2023-34928.
4
How can an attacker exploit CVE-2023-34928?
An attacker can exploit CVE-2023-34928 by sending a crafted POST request to the Edit_BasicSSID function, causing a stack overflow and resulting in a Denial of Service (DoS) attack.
5
Is H3C Magic B1ST vulnerable to CVE-2023-34928?
No, H3C Magic B1ST is not vulnerable to CVE-2023-34928.