VYPR

IOT_Vul_Public

by IOT Vul Public

CVEs (2)

  • CVE-2026-18814HigAug 4, 2026
    risk 0.47cvss 7.2epss 0.03

    A vulnerability was found in H3C NX15 V100R017. This impacts the function reload.reload_config of the file /api/esps. The manipulation results in command injection. The attack can be launched remotely. The exploit has been made public and could be used. The vendor was contacted…

  • CVE-2026-15479HigJul 12, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was found in H3C NX15 V100R017. Affected by this vulnerability is the function change_passwd of the file /api/login/modify of the component Administrator Password Modification Endpoint. The manipulation of the argument newPass results in weak password recovery.…