Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yyy0032

#31071of 53,624
8.3Total CVSS
Vulnerabilities · 1
PT-2026-41584
8.3
2026-05-17
H3C · Magic B3 · CVE-2026-8764
**Name of the Vulnerable Software and Affected Versions** H3C Magic B3 versions prior to 100R002 **Description** A buffer overflow exists in the `UpdateWanParams()` function within the '/goform/aspForm' endpoint. This issue occurs when the `param` argument is manipulated, allowing a remote attacker to trigger the overflow. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, restrict access to the '/goform/aspForm' endpoint or avoid using the `param` argument within the `UpdateWanParams()` function.