CVE-2023-33636

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published May 31, 2023
Updated: Jan 10, 2025
CWE ID 787

Summary

CVE-2023-33636 refers to a stack overflow vulnerability identified in H3C Magic R300 routers running version R300-2100MV100R004. This issue can be exploited through the ipqos_lanip_editlist interface located at /goform/aspForm. A stack overflow occurs when a program is unable to allocate sufficient memory to process new data, leading to unintended behavior or system crashes. An attacker could potentially use this vulnerability to execute arbitrary code or cause a denial-of-service condition. It is crucial for organizations using affected H3C Magic R300 routers to apply the necessary patches or updates to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share