This security advisory addresses a vulnerability identified in some of the Ethernet switches.
CVE-2026-15579
An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length during Web login processing. This may allow a remote attacker to submit a specially crafted overly long input, triggering a buffer overflow that can cause the authentication process to crash and result in a Denial of Service (DoS) attack
Given the high severity of these issues, users should apply the solutions immediately to reduce security risks.
The Identified Vulnerability Type and Potential Impact
| CVE ID |
Vulnerability Type |
Impact |
| CVE-2026-15579 |
CWE-787: Out-of-bounds Write
|
CAPEC-24: Filter Failure through Buffer Overflow |
Vulnerability Scoring Details
|
CVE ID
|
Base Score
|
Vector
|
Severity |
Unauthenticated
Remote Exploits
|
| CVE-2026-15579 |
CVSS 4.0: 8.8
|
AV:N/AC:L/AT:N/PR:N/UI:N/
VC:N/VI:L/VA:H/SC:N/SI:N/SA:N
|
High |
Yes |