Loading market data...
← Back to CVE feed

CVE-2026-18811

HIGH CVSS 7.2 View on NVD ↗

Description

A vulnerability was detected in H3C NX15 V100R017. The affected element is the function Add of the file /api/esps. Performing a manipulation of the argument esps.filter.url results in command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Published: Aug 04, 2026 21:16 UTC Modified: Aug 05, 2026 16:16 UTC