PT-2024-28271 · H3C · H3C Magic R230

Published

2024-06-24

·

Updated

2024-07-03

·

CVE-2024-38903

CVSS v3.1

4.1

Medium

VectorAV:P/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions H3C Magic R230 version V100R002
Description The issue allows attackers to execute arbitrary commands due to the udpserver opening port 9034.
Recommendations For H3C Magic R230 version V100R002, consider restricting access to port 9034 as a temporary workaround until a patch is available.

Exploit

Fix

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2024-38903

Affected Products

H3C Magic R230