Stack Overflow Vulnerability in H3C Magic R200 Router
CVE-2023-29910

4.9MEDIUM

Key Information:

Vendor
H3c
Vendor
CVE Published:
21 April 2023

Summary

The H3C Magic R200 router, specifically version R200V100R004, is susceptible to a stack overflow vulnerability. This occurs through the UpdateMacClone interface at /goform/aspForm, allowing potential attackers to exploit the flaw to execute unintended commands or disrupt service. It is crucial for users of this router version to implement necessary updates and security measures to mitigate potential risks.

References

CVSS V3.1

Score:
4.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.