LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-3823 - Vulnerability Analysis

HighCVSS: 8.8

Last Updated: March 10, 2026

Atop Technologies EHG2408 series switch - Buffer Overflow

Published: March 9, 2026Updated: March 10, 2026Remote Exploitable

Overview

Atop Technologies EHG2408 series switch contains a stack-based buffer overflow caused by improper input handling, letting unauthenticated remote attackers execute arbitrary code by controlling program execution flow.

Severity & Score

Severity: High
CVSS Score: 8.8
EPSS Score: 14.4%(Probability of exploitation in next 30 days)

Impact

Unauthenticated remote attackers can execute arbitrary code, potentially leading to full system compromise.

Mitigation

Update to the latest version provided by Atop Technologies.

Social Media Activity(1 post)

Offensive Sequence
Offensive Sequence
@offseq
Mar 9, 2026

🚨 CRITICAL: CVE-2026-3823 exposes Atop EHG2408 switches to unauthenticated RCE via stack-based buffer overflow. No patch yet — segment, restrict access, and monitor traffic. Full device compromise risk. https://radar.offseq.com/threat/cve-2026-3823-cwe-121-stack-based-buffer-overflow--68d582bc #OffSeq #ICS #Vuln #OTSecurity

View original post

Details

CVE ID
CVE-2026-3823
Severity
High
CVSS Score
8.8
Type
buffer_overflow
Status
confirmed
EPSS
14.4%
Social Posts
1

CWE

  • CWE-121
  • CWE-787

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Score

14.4%Probability of exploitation in the next 30 days