CVE-2026-18814
Severity CVSS v4.0:
HIGH
Type:
CWE-74
Injection
Publication date:
04/08/2026
Last modified:
12/08/2026
Description
A vulnerability was found in H3C NX15 V100R017. This impacts the function reload.reload_config of the file /api/esps. The manipulation results in command injection. The attack can be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.
Impact
Base Score 4.0
7.30
Severity 4.0
HIGH
Base Score 3.x
7.20
Severity 3.x
HIGH
Base Score 2.0
8.30
Severity 2.0
HIGH


