CVE-2025-4446: h3c Gr-5400ax

High severity, CVSS 8.0. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability has been found in H3C GR-5400AX up to 100R008 and classified as critical. This vulnerability affects the function Edit_List_SSID of the file /goform/aspForm. The manipulation of the argument param leads to buffer overflow. The attack needs to be approached within the local network.

Affected products

  • h3c Gr-5400ax: version 100R008 only

Published 2025-05-09. Last modified 2026-06-17.