H3c Security Vulnerabilities (CVEs)

Track 47 security vulnerabilities affecting H3c products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

25 Critical
18 High
4 Medium
🔔 Get Alerts for H3c
CVE-2025-60262 9.8

A vsftpd misconfiguration vulnerability in H3C wireless devices allows anonymous FTP uploads to be owned by the root user. Remote attackers can exploi...

Jan 6, 2026
CVE-2025-14015 8.8

A buffer overflow vulnerability in H3C Magic B0 routers allows remote attackers to execute arbitrary code by manipulating the param argument in the Ed...

Dec 4, 2025
CVE-2025-5162 6.3

This critical vulnerability in H3C SecCenter SMP-E1114P02 allows remote attackers to upload arbitrary files without restrictions via the /safeEvent/im...

May 26, 2025
CVE-2025-5160 4.3

A path traversal vulnerability in H3C SecCenter SMP-E1114P02 allows attackers to access arbitrary files on the system by manipulating the 'Name' param...

May 26, 2025
CVE-2025-5158 4.3

This CVE describes a path traversal vulnerability in H3C SecCenter SMP-E1114P02 that allows attackers to access arbitrary files on the system by manip...

May 25, 2025
CVE-2025-5156 8.8

A critical buffer overflow vulnerability in H3C GR-5400AX routers allows remote attackers to execute arbitrary code by manipulating the 'param' argume...

May 25, 2025
CVE-2025-3546 8.0

This critical vulnerability in H3C Magic routers allows authenticated attackers on the local network to execute arbitrary commands via command injecti...

Apr 14, 2025
CVE-2024-57473 9.8

H3C N12 V100R005 routers contain a critical buffer overflow vulnerability in the MAC address editing function due to insufficient input validation. At...

Jan 14, 2025
CVE-2024-57471 9.8

H3C N12 V100R005 wireless routers contain a buffer overflow vulnerability in their 2.4G wireless network processing function. Attackers can exploit th...

Jan 14, 2025
CVE-2024-57480 9.8

H3C N12 V100R005 wireless access points contain a critical buffer overflow vulnerability in their web management interface. Attackers can remotely cra...

Jan 14, 2025
CVE-2024-52765 9.8

H3C GR-1800AX MiniGRW1B0V100R007 devices are vulnerable to remote code execution via the aspForm parameter, allowing attackers to execute arbitrary co...

Nov 20, 2024
CVE-2024-42639 9.8

H3C GR1100-P routers running version v100R009 contain a hardcoded root password in the /etc/shadow file, allowing attackers to gain full administrativ...

Aug 16, 2024
CVE-2024-42637 9.8

H3C R3010 routers running version v100R002L02 contain a hardcoded root password in /etc/shadow, allowing attackers to gain complete administrative con...

Aug 16, 2024
CVE-2024-38902 9.8

H3C Magic R230 routers running V100R002 contain a hardcoded root password in /etc/shadow, allowing attackers to gain full administrative control. This...

Jun 24, 2024
CVE-2024-38903 4.1

CVE-2024-38903 is a command injection vulnerability in H3C Magic R230 routers where the UDP server on port 9034 allows unauthenticated attackers to ex...

Jun 24, 2024
CVE-2023-34934 7.5

This vulnerability allows attackers to cause a Denial of Service (DoS) on H3C Magic B1ST routers by sending a specially crafted POST request that trig...

Jun 28, 2023
CVE-2023-34936 7.5

A stack overflow vulnerability in the UpdateMacClone function of H3C Magic B1STV100R012 routers allows attackers to cause a Denial of Service (DoS) vi...

Jun 28, 2023
CVE-2023-34928 7.5

A stack overflow vulnerability in the Edit_BasicSSID function of H3C Magic B1STV100R012 routers allows attackers to cause a Denial of Service (DoS) vi...

Jun 28, 2023
CVE-2023-34930 7.5

A stack overflow vulnerability in the EditMacList function of H3C Magic B1STV100R012 routers allows attackers to cause Denial of Service (DoS) via cra...

Jun 28, 2023
CVE-2023-34932 7.5

A stack overflow vulnerability in the UpdateWanMode function of H3C Magic B1STV100R012 routers allows attackers to cause a Denial of Service (DoS) via...

Jun 28, 2023
CVE-2023-34924 7.5

H3C Magic B1STW B1STV100R012 routers contain a stack overflow vulnerability in the SetAPInfoById function that allows attackers to cause Denial of Ser...

Jun 26, 2023
CVE-2023-33641 7.2

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R300 routers via a stack overflow in the AddMacList interface. Attac...

May 31, 2023
CVE-2023-33643 7.2

This CVE describes a stack overflow vulnerability in H3C Magic R300 routers that allows remote attackers to execute arbitrary code via the AddWlanMacL...

May 31, 2023
CVE-2023-33627 7.2

This CVE describes a stack overflow vulnerability in H3C Magic R300 routers via the UpdateSnat interface at /goform/aspForm. Attackers can exploit thi...

May 31, 2023
CVE-2023-33629 7.2

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R300 routers via a stack overflow in the DeltriggerList interface. A...

May 31, 2023
CVE-2023-33631 7.2

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R300 routers via a stack overflow in the DelSTList interface. Attack...

May 31, 2023
CVE-2023-33633 7.2

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R300 routers via a stack overflow in the UpdateWanParams interface. ...

May 31, 2023
CVE-2023-33635 7.2

This CVE describes a stack overflow vulnerability in H3C Magic R300 routers that allows remote attackers to execute arbitrary code via the UpdateMacCl...

May 31, 2023
CVE-2023-33637 7.2

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R300 routers via a stack overflow in the DelDNSHnList interface. Att...

May 31, 2023
CVE-2023-33639 7.2

This CVE describes a stack overflow vulnerability in H3C Magic R300 routers via the SetMobileAPInfoById interface at /goform/aspForm. Attackers can ex...

May 31, 2023
CVE-2023-29693 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C GR-1200W MiniGRW1A0V100R006 routers via a stack overflow in the set_tftp_u...

May 8, 2023
CVE-2023-24093 9.8

This critical vulnerability in H3C A210-G wireless access points allows attackers to bypass authentication without requiring any password. Attackers c...

Feb 22, 2023
CVE-2022-34601 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R200 routers via a stack overflow in the Delstlist interface. Attack...

Jul 20, 2022
CVE-2022-34603 9.8

This CVE describes a stack overflow vulnerability in H3C Magic R200 routers via the DelDNSHnList interface at /goform/aspForm. Attackers can exploit t...

Jul 20, 2022
CVE-2022-34605 9.8

CVE-2022-34605 is a critical stack overflow vulnerability in H3C Magic R200 routers that allows remote attackers to execute arbitrary code by sending ...

Jul 20, 2022
CVE-2022-34607 9.8

CVE-2022-34607 is a critical stack overflow vulnerability in H3C Magic R200 routers that allows remote attackers to execute arbitrary code by sending ...

Jul 20, 2022
CVE-2022-34609 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R200 routers via a stack overflow in the INTF parameter at /doping.a...

Jul 20, 2022
CVE-2022-34599 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R200 routers via a stack overflow in the EdittriggerList interface. ...

Jul 20, 2022
CVE-2022-30914 9.8

This CVE describes a critical stack overflow vulnerability in H3C Magic R100 routers that allows remote attackers to execute arbitrary code by sending...

Jun 8, 2022
CVE-2022-30916 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R100 routers by sending specially crafted requests to the /goform/as...

Jun 8, 2022
CVE-2022-30918 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R100 routers via a stack overflow in the Asp_SetTelnet parameter. At...

Jun 8, 2022
CVE-2022-30920 9.8

This CVE describes a stack overflow vulnerability in H3C Magic R100 routers via the Edit_BasicSSID parameter at /goform/aspForm. Attackers can exploit...

Jun 8, 2022
CVE-2022-30922 9.8

This CVE describes a critical stack overflow vulnerability in H3C Magic R100 routers that allows remote attackers to execute arbitrary code via a spec...

Jun 8, 2022
CVE-2022-30924 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R100 routers via a stack overflow in the SetAPWifiorLedInfoById para...

Jun 8, 2022
CVE-2022-30926 9.8

This vulnerability allows remote attackers to execute arbitrary code on H3C Magic R100 routers via a stack overflow in the EditMacList parameter. Atta...

Jun 8, 2022
CVE-2022-30909 9.8

This CVE describes a stack overflow vulnerability in H3C Magic R100 routers via the CMD parameter at /goform/aspForm. Attackers can exploit this to ex...

Jun 8, 2022
CVE-2022-30912 9.8

This CVE describes a critical stack overflow vulnerability in H3C Magic R100 routers that allows remote attackers to execute arbitrary code by sending...

Jun 8, 2022

Why Monitor H3c Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 47+ known vulnerabilities affecting H3c products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable H3c packages in under 60 seconds. No agents required - completely agentless scanning that works across H3c deployments.

Free vulnerability database: Access detailed information about every H3c CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new H3c CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring H3c CVEs Free