Stack Overflow Vulnerability in H3C Magic NX18 Plus Product
CVE-2022-36499

7.8HIGH

Key Information:

Vendor

H3c

Vendor
CVE Published:
25 August 2022

What is CVE-2022-36499?

A stack overflow vulnerability has been identified in the H3C Magic NX18 Plus product, specifically within the DEleteusergroup function. This weakness could allow an attacker to execute arbitrary code or cause a denial of service by manipulating input parameters. Affected users should take immediate action by updating to the latest version to mitigate the risks associated with this vulnerability, ensuring their network devices remain secure.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.