Buffer Overflow Vulnerability in H3C N12 Router
CVE-2024-57473
9.8CRITICAL
Summary
The H3C N12 V100R005 vulnerability arises from insufficient length verification in its MAC address editing feature, allowing attackers to exploit this flaw. By sending a carefully crafted POST request to the /bin/webs interface, malicious actors can trigger a buffer overflow, causing the device to crash or execute arbitrary commands. This vulnerability poses a significant risk to the integrity and availability of affected systems.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published