Impact
The vulnerability resides in the Add function of /api/esps on H3C NX15 routers. By manipulating the esps.filter.url parameter, an attacker can inject arbitrary shell commands. The flaw is classified as command injection (CWE‑74 and CWE‑77) and allows remote execution of OS commands without authentication. The impact is complete compromise of the affected device, including unauthorized access, data exfiltration, and possible use as a pivot for further attacks.
Affected Systems
Affected systems are H3C NX15 routers running firmware version V100R017. Only this build is confirmed vulnerable; other firmware revisions may or may not be impacted. Administrators should verify if their fleet runs this version.
Risk and Exploitability
The CVSS score of 8.6 indicates a high severity level. EPSS is not available, but the existence of public exploits and remote attack surface suggests a realistic exploitation probability. The vulnerability is not yet listed in the CISA KEV catalog. Attackers can reach the vulnerable endpoint over the network; therefore, the exploitation vector is remote network. Immediate remediation is essential to prevent possible compromise.
OpenCVE Enrichment