|
247311
|
6.5 |
MEDIUM
Local
|
huawei
|
fusioncompute
|
FusionCompute V100R005C00 and V100R005C10 have an improper authorization vulnerability due to improper permission settings for a certain file on the host machine. An authenticated attacker could crea…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-8158
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247312
|
5.9 |
MEDIUM
Network
|
huawei
|
oceanstor_5800_v3_firmware oceanstor_6900_v3_firmware
|
OceanStor 5800 V3 with software V300R002C00 and V300R002C10, OceanStor 6900 V3 V300R001C00 has an information leakage vulnerability. Products use TLS1.0 to encrypt. Attackers can exploit TLS1.0's vul…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2017-8157
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247313
|
6.8 |
MEDIUM
Physics
|
huawei
|
b2338-168_firmware
|
The outdoor unit of Customer Premise Equipment (CPE) product B2338-168 V100R001C00 has a no authentication vulnerability on the serial port. An attacker can access the serial port on the circuit boar…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2017-8156
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247314
|
6.5 |
MEDIUM
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar1200-s_firmware ar150_firmware ar150-s_firmware ar160_firmware ar200_firmware ar200-s_firmware ar2200_firmware ar2200-s_firmware ar320…
|
AR120-S with software V200R006C10, V200R007C00, V200R008C20, V200R008C30,AR1200 with software V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30,AR1200-S with s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8162
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247315
|
4.6 |
MEDIUM
Physics
|
huawei
|
eva-l09
|
EVA-L09 smartphones with software Earlier than EVA-L09C25B150CUSTC25D003 versions,Earlier than EVA-L09C440B140 versions,Earlier than EVA-L09C464B361 versions,Earlier than EVA-L09C675B320CUSTC675D004 …
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2017-8161
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247316
|
7.8 |
HIGH
Local
|
huawei
|
vicky-al00a_firmware vicky-al00c_firmware vicky-tl00a_firmware victoria-al00a_firmware victoria-tl00a_firmware
|
The Madapt Driver of some Huawei smart phones with software Earlier than Vicky-AL00AC00B172 versions,Vicky-AL00CC768B122,Vicky-TL00AC01B167,Earlier than Victoria-AL00AC00B172 versions,Victoria-TL00AC…
|
CWE-416
Use After Free
|
CVE-2017-8160
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247317
|
7.8 |
HIGH
Local
|
huawei
|
agassi-l09hn_firmware agassi-w09hn_firmware kobe-l09ahn_firmware kobe-w09chn_firmware
|
Some Huawei smartphones with software AGS-L09C233B019,AGS-W09C233B019,KOB-L09C233B017,KOB-W09C233B012 have a type confusion vulnerability. The program initializes a variable using one type, but it la…
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2017-8159
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247318
|
8.4 |
HIGH
Local
|
huawei
|
b2338-168_firmware
|
The outdoor unit of Customer Premise Equipment (CPE) product B2338-168 V100R001C00 has a no authentication vulnerability on a certain port. After accessing the network between the indoor and outdoor …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2017-8155
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247319
|
7.1 |
HIGH
Local
|
huawei
|
vmall
|
Huawei VMall (for Android) with the versions before 1.5.8.5 have a privilege elevation vulnerability due to improper design. An attacker can trick users into installing a malicious app which can send…
|
CWE-275
Permission Issues
|
CVE-2017-8153
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247320
|
4.6 |
MEDIUM
Physics
|
huawei
|
honor_5s_firmware
|
Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have a Factory Reset Protection (FRP) bypass security vulnerability due to the improper design. An attacker can access f…
|
CWE-358
Improperly Implemented Security Check for Standard
|
CVE-2017-8152
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|