


Perceptive Security
SOC/SIEM Consultancy

A security vulnerability has been detected in H3C NX15 V100R017. Affected is the function service.add of the file /api/esps of the component Web API. Such manip…
Published:
4 August 2026 at 22:00:00
Alert date:
5 August 2026 at 06:00:58
Source:
nvd.nist.gov
Mobile & IoT, Network Infrastructure, Zero-Day Vulnerabilities
A security vulnerability has been identified in H3C NX15 V100R017, specifically in the service.add function of the /api/esps Web API endpoint. The flaw exposes a dangerous routine that can be exploited remotely without physical access to the device. A public proof-of-concept exploit has been disclosed on GitHub, increasing the risk of active exploitation. The vulnerability was responsibly disclosed to the vendor prior to public release. This issue falls under the category of exposed dangerous routines in IoT networking equipment. The affected product is a network device manufactured by H3C, a prominent networking vendor. The exploit chain reportedly achieves root-level remote code execution. The public availability of the PoC significantly elevates the risk for unpatched deployments.
Technical details
Mitigation steps:
Affected products:
H3C NX15 V100R017
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-18901
https://github.com/coconut652-7/IOT_Vul_Public/blob/main/H3C/NX15R017/service_add_root_rce_chain/poc/postauth_service_add_rce.py
https://github.com/coconut652-7/IOT_Vul_Public/tree/main/H3C/NX15R017/service_add_root_rce_chain/report
https://vuldb.com/cve/CVE-2026-18901
https://vuldb.com/submit/857817
https://vuldb.com/vuln/385935
https://vuldb.com/vuln/385935/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
