Stack Overflow Vulnerability in H3C Magic NX18 Plus Product
CVE-2022-36499

7.8HIGH

Key Information:

Vendor
H3c
Vendor
CVE Published:
25 August 2022

Summary

A stack overflow vulnerability has been identified in the H3C Magic NX18 Plus product, specifically within the DEleteusergroup function. This weakness could allow an attacker to execute arbitrary code or cause a denial of service by manipulating input parameters. Affected users should take immediate action by updating to the latest version to mitigate the risks associated with this vulnerability, ensuring their network devices remain secure.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.