GHSA-7x3v-6rjw-2262HighCVSS 7.2
A vulnerability was found in H3C NX15 V100R017. This impacts the function reload.reload_config of...
🔗 CVE IDs covered (1)
📋 Description
A vulnerability was found in H3C NX15 V100R017. This impacts the function reload.reload_config of the file /api/esps. The manipulation results in command injection. The attack can be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.
🔗 References (7)
- https://nvd.nist.gov/vuln/detail/CVE-2026-18814
- https://github.com/coconut652-7/IOT_Vul_Public/tree/main/H3C/NX15R017/service_add_root_rce
- https://vuldb.com/cve/CVE-2026-18814
- https://vuldb.com/submit/857813
- https://vuldb.com/vuln/385813
- https://vuldb.com/vuln/385813/cti
- https://github.com/advisories/GHSA-7x3v-6rjw-2262