CVE-2026-3823
Critical
|9.3Exploit Available
Plain English Summary
AI-powered analysis for quick understanding
This vulnerability allows unauthenticated remote attackers to take control of the switch's software and run any code they want. It requires no special access or credentials, making it particularly dangerous for networks using this firmware.
Technical Description
EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's execution flow and execute arbitrary code.
CVSS Vector Analysis
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
Confidentiality ImpactHigh
Integrity ImpactHigh
Availability ImpactHigh
ScopeChanged
Vector String
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XExploit Resources
Search for proof-of-concept code and exploit modules
Official References
Est. Bounty
$8,000($5K-$15K)
Vendor Response
Grade APatched in 1 day
Quick Information
Published
Mar 9, 2026
30 days ago
Last Modified
Mar 10, 2026
28 days ago
Vendor
blackbeartechhive
Product
atop ehg2408 firmware