CVE-2026-3823

EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's execution flow and execute arbitrary code.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:blackbeartechhive:atop_ehg2408_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blackbeartechhive:atop_ehg2408:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:blackbeartechhive:atop_ehg2408-2sfp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blackbeartechhive:atop_ehg2408-2sfp:-:*:*:*:*:*:*:*

History

10 Mar 2026, 18:46

Type Values Removed Values Added
First Time Blackbeartechhive atop Ehg2408-2sfp
Blackbeartechhive atop Ehg2408 Firmware
Blackbeartechhive
Blackbeartechhive atop Ehg2408-2sfp Firmware
Blackbeartechhive atop Ehg2408
Summary
  • (es) El switch de la serie EHG2408 desarrollado por Atop Technologies tiene una vulnerabilidad de desbordamiento de búfer basado en pila, que permite a atacantes remotos no autenticados controlar el flujo de ejecución del programa y ejecutar código arbitrario.
References () https://www.twcert.org.tw/en/cp-139-10753-e091e-2.html - () https://www.twcert.org.tw/en/cp-139-10753-e091e-2.html - Third Party Advisory
References () https://www.twcert.org.tw/tw/cp-132-10752-5a4d9-1.html - () https://www.twcert.org.tw/tw/cp-132-10752-5a4d9-1.html - Third Party Advisory
CPE cpe:2.3:h:blackbeartechhive:atop_ehg2408-2sfp:-:*:*:*:*:*:*:*
cpe:2.3:o:blackbeartechhive:atop_ehg2408_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:blackbeartechhive:atop_ehg2408-2sfp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blackbeartechhive:atop_ehg2408:-:*:*:*:*:*:*:*
CWE CWE-787

09 Mar 2026, 07:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-09 07:16

Updated : 2026-03-10 18:46


NVD link : CVE-2026-3823

Mitre link : CVE-2026-3823

CVE.ORG link : CVE-2026-3823


JSON object : View

Products Affected

blackbeartechhive

  • atop_ehg2408_firmware
  • atop_ehg2408
  • atop_ehg2408-2sfp
  • atop_ehg2408-2sfp_firmware
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write