CVE-2026-38718
Awaiting Analysis
Awaiting Analysis - Queue
Buffer Overflow in InHand Networks IR912 and IR915 Devices
Publication date: 2026-06-18
Last updated on: 2026-06-18
Assigner: MITRE
Description
Description
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a buffer overflow vulnerability in the device registration function. This vulnerability could allow an attacker to cause a denial of service attack on the remote target device.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| inhand_networks | ir912 | From 1.0.0.r20042 (exc) |
| inhand_networks | ir915 | From 1.0.0.r20042 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-120 | The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer. |