H3C GR-1800AX MiniGRW1B0V100R007 is vulnerable to remote code execution (RCE) via the aspForm parameter.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-46046 H3C GR-1800AX MiniGRW1B0V100R007 is vulnerable to remote code execution (RCE) via the aspForm parameter.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 26 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-94
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 22 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
First Time appeared H3c
H3c gr-1800ax
H3c gr-1800ax Firmware
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:h:h3c:gr-1800ax:-:*:*:*:*:*:*:*
cpe:2.3:o:h3c:gr-1800ax_firmware:minigrw1b0v100r007:*:*:*:*:*:*:*
Vendors & Products H3c
H3c gr-1800ax
H3c gr-1800ax Firmware
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Wed, 20 Nov 2024 21:00:00 +0000

Type Values Removed Values Added
Description H3C GR-1800AX MiniGRW1B0V100R007 is vulnerable to remote code execution (RCE) via the aspForm parameter.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-03-13T13:30:55.764Z

Reserved: 2024-11-15T00:00:00.000Z

Link: CVE-2024-52765

cve-icon Vulnrichment

Updated: 2024-11-26T16:51:58.166Z

cve-icon NVD

Status : Modified

Published: 2024-11-20T21:15:08.783

Modified: 2025-03-13T14:15:33.100

Link: CVE-2024-52765

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.