Stack Overflow Vulnerability in H3C Magic Router
CVE-2023-27806
4.9MEDIUM
Summary
The H3C Magic R100 router has been found to contain a stack overflow vulnerability in the ipqos_lanip_dellist interface located at /goform/aspForm. This flaw enables attackers to send a specially crafted payload, which can cause a Denial of Service (DoS) condition, potentially disrupting network operations and accessibility.
References
CVSS V3.1
Score:
4.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved