CVE-2025-57578: High severity H3C Magic M Device vulnerability
Published Sep 12, 2025
·Updated
An issue in H3C Magic M Device M2V100R006 allows a remote attacker to execute arbitrary code via the default password
Affected Software
1 affected component
H3C Magic M Device
Event History
Sep 12, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-57578?
CVE-2025-57578 is considered a high severity vulnerability due to its ability to allow remote code execution.
2
How does CVE-2025-57578 affect the H3C Magic M Device?
CVE-2025-57578 allows an attacker to execute arbitrary code on the H3C Magic M Device due to the use of a default password.
3
What steps should be taken to mitigate CVE-2025-57578?
To mitigate CVE-2025-57578, users should change the default password and apply any available patches from H3C.
4
Is CVE-2025-57578 easily exploitable?
Yes, CVE-2025-57578 can be easily exploited by attackers due to the use of default credentials.
5
What versions of H3C Magic M Device are affected by CVE-2025-57578?
CVE-2025-57578 affects the H3C Magic M Device running the firmware version M2V100R006.