CVE-2026-15579: Buffer Overflow
Published Sep 18, 2026
·Updated
An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length during Web login processing. This may allow a remote attacker to submit a specially crafted overly long input, triggering a buffer overflow that can cause the authentication process to crash and result in a Denial of Service (DoS) attack.
Event History
Sep 18, 2026
CVE Published
via MITRE·09:32 AM
Data Sourced
via MITRE·09:32 AM
RemedyDescriptionWeakness
Frequently Asked Questions
1
What does an attacker need to reach to exploit this issue?
The attacker needs remote access to the switch's Web login interface and must submit a specially crafted username that exceeds the expected length.
2
What is the expected impact of successful exploitation?
Successful exploitation can overflow a buffer during authentication processing, crash the authentication process, and cause a denial of service.