CVE-2024-57479: Buffer Overflow
H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the mac address update function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-57479?
CVE-2024-57479 is classified as a critical vulnerability due to its potential to allow remote code execution and denial of service.
How do I fix CVE-2024-57479?
To fix CVE-2024-57479, update the H3C N12 device to the latest firmware provided by H3C that addresses the buffer overflow vulnerability.
What may happen if CVE-2024-57479 is exploited?
If exploited, CVE-2024-57479 may allow an attacker to crash the device or execute arbitrary commands remotely.
Which products are affected by CVE-2024-57479?
CVE-2024-57479 specifically affects the H3C N12 V100R005 model.
Can CVE-2024-57479 be exploited remotely?
Yes, CVE-2024-57479 can be exploited remotely by sending a crafted POST request to the vulnerable endpoint.