H3C NX15是中国H3C公司的一款路由器。 H3C NX15 V100R017版本存在安全漏洞,该漏洞源于文件/api/esps中的Add函数对参数esps.filter.url操作不当,可能导致命令注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-18810 | 7.3 HIGH | H3C NX15 networkSetup missing authentication |
| CVE-2026-18812 | 7.2 HIGH | H3C NX15 esps esps.ipv6.wan command injection |
| CVE-2026-18813 | 7.2 HIGH | H3C NX15 esps delete command injection |
| CVE-2026-18814 | 7.2 HIGH | H3C NX15 esps reload.reload_config command injection |
No comments yet