Stack Overflow Vulnerability in H3C Magic R100 Network Device
CVE-2022-30918
9.8CRITICAL
What is CVE-2022-30918?
The H3C Magic R100 network device is susceptible to a stack overflow vulnerability originating from the Asp_SetTelnet parameter at the /goform/aspForm endpoint. This weakness can potentially allow attackers to manipulate the device's stack, leading to unauthorized access and execution of arbitrary code, thereby compromising the integrity and availability of the device. Users of the affected product should take immediate steps to mitigate potential security risks.