What is CVE-2026-18810?
A missing authentication vulnerability has been detected in the `/api/wizard/networkSetup` file of H3C NX15 V100R017. This allows a remote attacker to manipulate the affected function. No specific CVSS score or patch details have been disclosed yet; the vendor has been contacted.
Azərbaycanca: H3C NX15 V100R017 cihazında `/api/wizard/networkSetup` faylında autentifikasiya olmaması zəifliyi aşkarlanıb. Bu, uzaqdan hücumçuya təsirə məruz qalan funksiyanı manipulyasiya etməyə imkan verir. Hələlik xüsusi CVSS balı və ya yamaq məlumatı açıqlanmayıb, vendor ilə əlaqə saxlanılıb.
Related CVEs
link basis: same weakness class CWE-306
FAQ2
In which file was the missing authentication vulnerability detected on the H3C NX15 V100R017 device?
The missing authentication vulnerability was detected in the `/api/wizard/networkSetup` file.
What does this vulnerability allow a remote attacker to do?
This vulnerability allows a remote attacker to manipulate the affected function.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.