Vulnerability Description
The udpserver in H3C Magic R100 V200R004 and V100R005 has the 9034 port opened, allowing attackers to execute arbitrary commands.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| H3C | Magic R100 Firmware | v100r005 |
| H3C | Magic R100 | - |
References
- https://github.com/zhefox/IOT_Vul/tree/main/H3C/H3CR100/1ExploitThird Party Advisory
- https://github.com/zhefox/IOT_Vul/tree/main/H3C/H3CR100/1ExploitThird Party Advisory
FAQ
What is CVE-2022-34598?
CVE-2022-34598 is a vulnerability with a CVSS score of 9.8 (CRITICAL). The udpserver in H3C Magic R100 V200R004 and V100R005 has the 9034 port opened, allowing attackers to execute arbitrary commands.
How severe is CVE-2022-34598?
CVE-2022-34598 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-34598?
Check the references section above for vendor advisories and patch information. Affected products include: H3C Magic R100 Firmware, H3C Magic R100.