CVE-2026-3823
Severity CVSS v4.0:
CRITICAL
Type:
CWE-121
Stack-based Buffer Overflow
Publication date:
09/03/2026
Last modified:
10/03/2026
Description
EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's execution flow and execute arbitrary code.
Impact
Base Score 4.0
9.30
Severity 4.0
CRITICAL
Base Score 3.x
8.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:blackbeartechhive:atop_ehg2408_firmware:*:*:*:*:*:*:*:* | 3.36 (excluding) | |
| cpe:2.3:h:blackbeartechhive:atop_ehg2408:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:blackbeartechhive:atop_ehg2408-2sfp_firmware:*:*:*:*:*:*:*:* | 3.36 (excluding) | |
| cpe:2.3:h:blackbeartechhive:atop_ehg2408-2sfp:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



