Vulnerability Description
In H3C GR2200 MiniGR1A0V100R016, the USERLIMIT_GLOBAL option is set to 0 in the /etc/bftpd.conf. This can cause DoS attacks when unlimited users are connected.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| H3C | Gr2200 Firmware | minigr1a0v100r016 |
| H3C | Gr2200 | - |
Related Weaknesses (CWE)
References
- http://h3c.comProduct
- https://gist.github.com/TPCchecker/1193f51fc870b597c8a59860199d50e4Broken Link
- https://www.notion.so/CVE-2025-44653-24754a1113e780fab128c2c5752f5703
FAQ
What is CVE-2025-44653?
CVE-2025-44653 is a vulnerability with a CVSS score of 7.5 (HIGH). In H3C GR2200 MiniGR1A0V100R016, the USERLIMIT_GLOBAL option is set to 0 in the /etc/bftpd.conf. This can cause DoS attacks when unlimited users are connected.
How severe is CVE-2025-44653?
CVE-2025-44653 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-44653?
Check the references section above for vendor advisories and patch information. Affected products include: H3C Gr2200 Firmware, H3C Gr2200.