CVE-2026-3823Disclosure(blackbeartechhive / atop_ehg2408)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's execution flow and execute arbitrary code.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-121CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

DECLINING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • atop_ehg2408
  • atop_ehg2408-2sfp
  • atop_ehg2408-2sfp_firmware
  • atop_ehg2408_firmware

Threat summary

  • Public PoC is present in monitored signal
  • 10 mentions across 4 observed days
  • Momentum state: declining

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 8 signals
  • Disclosure: 9 classified signals
  • General: 1 classified signal
  • Peaked 3d ago at 7 mentions (2026-03-09); latest day: 1
  • 10 total mentions across 4 days

Affected systems

Products
atop_ehg2408atop_ehg2408-2sfpatop_ehg2408-2sfp_firmwareatop_ehg2408_firmware

1 version affected across 4 products

Deep dive

Activity timeline10 mentions / 4d
02457Mentions · 2026-03-09: 7Mentions · 2026-03-10: 1Mentions · 2026-03-12: 1Mentions · 2026-03-13: 1PoC Mentioned / Linked · 2026-03-09: 1Technical Details · 2026-03-09: 6Technical Details · 2026-03-12: 1Technical Details · 2026-03-13: 103-0903-1003-1203-13
Signal classification2 categories
Disclosure
990.0%
General
110.0%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-03-097
Disclosure7
2026-03-101
Disclosure1
2026-03-121
Disclosure1
2026-03-131
General1
Full discourse10 posts
  • CRAC Learning - Tech@cracbot
    General

    CVE-2026-3823 (CVSS:9.3, HIGH) is Analyzed. EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthent..https://nvd.nist.gov/vuln/detail/CVE-2026-3823 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces a high‑severity stack‑based buffer overflow CVE-2026‑3823 affecting Atop Technologies' EHG2408 switch but provides no evidence of exploitation, PoC, or patch information.

    0000031
    172 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3823 (CVSS:9.3, HIGH) is Analyzed. EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthent..https://nvd.nist.gov/vuln/detail/CVE-2026-3823 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet announces CVE-2026-3823, a stack-based buffer overflow rated CVSS 9.3 high, but does not provide PoC, exploit code, exploitation evidence, or patch details.

    0000033
    172 followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-3823 - Atop Technologies - EHG2408 - https://www.redpacketsecurity.com/cve-alert-cve-2026-3823-atop-technologies-ehg2408/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-3823 #atop-technologies #ehg2408

    Post summary

    The text announces a new CVE (CVE-2026-3823) alert for Atop Technologies, serving as a disclosure of the vulnerability.

    0000072
    3.5K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3823 EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's… https://www.cve.org/CVERecord?id=CVE-2026-3823

    Post summary

    CVE-2026-3823 discloses a stack-based buffer overflow in an EHG2408 series switch from Atop Technologies, allowing unauthenticated remote attackers to potentially take control of the device.

    00000131
    56.6K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3823 - Atop Technologies|EHG2408 series switch - Stack-based Buffer Overflow Intel Report: https://ift.tt/5kUtvbg

    Post summary

    Intel reports a stack-based buffer overflow vulnerability (CVE-2026-3823) affecting Atop Technologies EHG2408 series switches.

    0000057
    347 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-3823 - High EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's execution flow and exec... https://www.thehackerwire.com/vulnerability/CVE-2026-3823/ https://t.co/nazugoFkad

    Post summary

    The tweet announces CVE-2026-3823, a stack‑based buffer overflow in Atop Technologies' EHG2408 switch, without any PoC, exploit, or patch details.

    0000045
    130 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3823 Stack-Based Buffer Overflow in Atop Technologies EHG2408 Series Switch Enables Remote Code Execution https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3823

    Post summary

    The message announces CVE-2026-3823, a stack-based buffer overflow in Atop Technologies EHG2408 switches enabling remote code execution, without mentioning PoC, exploit code, patches, or active exploitation.

    0000049
    4.0K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-3823: HIGH] Atop Technologies EHG2408 series switch faces a critical cyber threat with a Stack-based Buffer Overflow vulnerability, enabling remote attackers to take control and run malicious code.#cve,CVE-2026-3823,#cybersecurity https://cvefind.com/CVE-2026-3823

    Post summary

    The post announces CVE‑2026‑3823 as a stack‑based buffer overflow affecting Atop Technologies EHG2408 series switches, noting its high severity but providing no proof of exploitation, exploit code, patch, or evidence of active attacks.

    0000059
    600 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    We have just added an important vulnerability affecting Atop EHG2408 and EHG2408-2SFP (CVE-2026-3823) https://vuldb.com/?id.349790

    Post summary

    A new advisory has been posted for CVE‑2026‑3823, noting a vulnerability in Atop EHG2408 and EHG2408‑2SFP models.

    0000085
    2.1K followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2026-3823: Atop Technologies|EHG2408 series ... Unauthenticated RCE on industrial switches via stack overflow - perfect pivot point for OT networks with zero user inter... https://zerodaysignal.com/vulnerability/CVE-2026-3823 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The tweet announces CVE-2026-3823, an unauthenticated remote code execution vulnerability in Atop Technologies EHG2408 industrial switches, with a link likely containing PoC details.

    0000092
    140 followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
HWblackbeartechhiveatop_ehg2408---
HWblackbeartechhiveatop_ehg2408-2sfp---
OSblackbeartechhiveatop_ehg2408-2sfp_firmware---
OSblackbeartechhiveatop_ehg2408_firmware---

Explore more