CVE-2023-33636
CVSS 3.1 Score 7.2 of 10 (high)
Details
Summary
CVE-2023-33636 refers to a stack overflow vulnerability identified in H3C Magic R300 routers running version R300-2100MV100R004. This issue can be exploited through the ipqos_lanip_editlist interface located at /goform/aspForm. A stack overflow occurs when a program is unable to allocate sufficient memory to process new data, leading to unintended behavior or system crashes. An attacker could potentially use this vulnerability to execute arbitrary code or cause a denial-of-service condition. It is crucial for organizations using affected H3C Magic R300 routers to apply the necessary patches or updates to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- New H3C Technologies Co. Ltd.