Home/Product/h3c magic r100 firmware
Product

h3c magic r100 firmware

28 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-27810
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspFo
4.9MEDIUM
CVE-2023-27808
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DeltriggerList interface at /goform/aspForm. Th
4.9MEDIUM
CVE-2023-27807
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the Delstlist interface at /goform/aspForm. This vu
4.9MEDIUM
CVE-2023-27806
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_dellist interface at /goform/aspFor
4.9MEDIUM
CVE-2023-27805
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditSTList interface at /goform/aspForm. This v
4.9MEDIUM
CVE-2023-27804
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DelvsList interface at /goform/aspForm. This vu
4.9MEDIUM
CVE-2023-27803
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm. T
4.9MEDIUM
CVE-2023-27802
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditvsList parameter at /goform/aspForm. This v
4.9MEDIUM
CVE-2023-27801
all versions
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm. This
4.9MEDIUM
CVE-2022-34598
all versions
The udpserver in H3C Magic R100 V200R004 and V100R005 has the 9034 port opened, allowing attackers to execute arbitrary commands.
9.8CRITICAL
CVE-2022-30926
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the EditMacList parameter at /goform/aspF
9.8CRITICAL
CVE-2022-30925
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the AddMacList parameter at /goform/aspFo
9.8CRITICAL
CVE-2022-30924
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the SetAPWifiorLedInfoById parameter at /
9.8CRITICAL
CVE-2022-30923
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the Asp_SetTimingtimeWifiAndLed parameter
9.8CRITICAL
CVE-2022-30922
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the EditWlanMacList parameter at /goform/
9.8CRITICAL
CVE-2022-30921
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the SetMobileAPInfoById parameter at /gof
9.8CRITICAL
CVE-2022-30920
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the Edit_BasicSSID parameter at /goform/a
9.8CRITICAL
CVE-2022-30919
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the Edit_BasicSSID_5G parameter at /gofor
9.8CRITICAL
CVE-2022-30918
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the Asp_SetTelnet parameter at /goform/as
9.8CRITICAL
CVE-2022-30917
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the AddWlanMacList parameter at /goform/a
9.8CRITICAL
CVE-2022-30916
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the Asp_SetTelnetDebug parameter at /gofo
9.8CRITICAL
CVE-2022-30915
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the UpdateSnat parameter at /goform/aspFo
9.8CRITICAL
CVE-2022-30914
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the UpdateMacClone parameter at /goform/a
9.8CRITICAL
CVE-2022-30913
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the ipqos_set_bandwidth parameter at /gof
9.8CRITICAL
CVE-2022-30912
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the UpdateWanParams parameter at /goform/
9.8CRITICAL
CVE-2022-30910
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the GO parameter at /goform/aspForm.
9.8CRITICAL
CVE-2022-30909
<= v100r005
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the CMD parameter at /goform/aspForm.
9.8CRITICAL
CVE-2022-28940
<= v100r005
In H3C MagicR100 <=V100R005, the / Ajax / ajaxget interface can be accessed without authorization. It sends a large amount of data
7.5HIGH
threatengine.sh