


Perceptive Security
SOC/SIEM Consultancy

A vulnerability has been found in H3C Magic B1 up to 100R004. The affected element is the function SetAPWifiorLedInfoById of the file /goform/aspForm. The manip…
Published:
18 april 2026 om 22:00:00
Alert date:
19 april 2026 om 10:00:56
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A buffer overflow vulnerability has been discovered in H3C Magic B1 routers up to version 100R004. The vulnerability affects the SetAPWifiorLedInfoById function in the /goform/aspForm file, where manipulation of the param argument leads to buffer overflow. The vulnerability can be exploited remotely and a public exploit has been disclosed. The vendor was contacted about the disclosure but did not respond. This represents a critical security risk for affected H3C router models.
Technical details
Mitigation steps:
Affected products:
H3C Magic B1
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-6563
https://github.com/K4ptor/H3C-routers-vulnerability/
https://vuldb.com/submit/789531
https://vuldb.com/vuln/358200
https://vuldb.com/vuln/358200/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
