CVE-2024-57479: h3c n12 Firmware

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the mac address update function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.

Affected products

  • h3c n12 Firmware: version 100r005 only

Published 2025-01-14. Last modified 2026-07-05.