High severity7.3NVD Advisory· Published Jul 12, 2026· Updated Jul 14, 2026
CVE-2026-15479
CVE-2026-15479
Description
A vulnerability was found in H3C NX15 V100R017. Affected by this vulnerability is the function change_passwd of the file /api/login/modify of the component Administrator Password Modification Endpoint. The manipulation of the argument newPass results in weak password recovery. The attack may be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.
Affected products
1- Range: V100R017
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.