|
257051
|
7.2 |
HIGH
Network
|
bluecoat
|
advanced_secure_gateway content_analysis_system_software
|
Blue Coat Advanced Secure Gateway (ASG) 6.6 before 6.6.5.4 and Content Analysis System (CAS) 1.3 before 1.3.7.4 are susceptible to an OS command injection vulnerability. An authenticated malicious ad…
|
CWE-78
OS Command
|
CVE-2016-9091
|
2024-11-21 12:00 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257052
|
7.5 |
HIGH
Local
|
huawei
|
fusionstorage
|
The maintenance module in Huawei FusionStorage V100R003C30U1 allows attackers to create documents according to special rules to obtain the OS root privilege of FusionStorage.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8803
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257053
|
6.5 |
MEDIUM
Network
|
huawei
|
secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware
|
The security policy processing module in Huawei Secospace USG6300 with software V500R001C20SPC100, V500R001C20SPC101, V500R001C20SPC200; Secospace USG6500 with software V500R001C20SPC100, V500R001C20…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8802
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257054
|
7.2 |
HIGH
Network
|
huawei
|
oceanstor_5600_v3_firmware
|
Huawei OceanStor 5600 V3 with V300R003C00C10 and earlier versions allows attackers with administrator privilege to inject a command into a specific command's parameters, and run this injected command…
|
CWE-77
Command Injection
|
CVE-2016-8801
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257055
|
7.5 |
HIGH
Network
|
huawei
|
usg5500_firmware
|
Huawei USG5500 with software V300R001C00 and V300R001C00 allows attackers to bypass the anti-DDoS module of the USGs to cause a denial of service condition on the backend server.
|
CWE-284
Improper Access Control
|
CVE-2016-8798
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257056
|
7.5 |
HIGH
Network
|
huawei
|
ar3200_firmware s12700_firmware s5300_firmware s5700_firmware s6300_firmware s6700_firmware s7700_firmware s9300_firmware s9700_firmware
|
Huawei AR3200 with software V200R007C00, V200R005C32, V200R005C20; S12700 with software V200R008C00, V200R007C00; S5300 with software V200R008C00, V200R007C00, V200R006C00; S5700 with software V200R0…
|
CWE-399
Resource Management Errors
|
CVE-2016-8797
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257057
|
7.5 |
HIGH
Network
|
huawei
|
usg9520_firmware usg9580_firmware usg9560_firmware
|
Huawei USG9520 V300R001C01, USG9560 V300R001C01, and USG9580 V300R001C01 allow unauthenticated attackers to send abnormal DHCP request packets to the affected products to trigger a DoS condition.
|
CWE-20
Improper Input Validation
|
CVE-2016-8796
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257058
|
5.9 |
MEDIUM
Network
|
huawei
|
cloudengine_5800_firmware cloudengine_6800_firmware cloudengine_12800_firmware cloudengine_7800_firmware cloudengine_8800_firmware secospace_usg6600_firmware
|
Huawei CloudEngine 12800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00; CloudEngine 5800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00,…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-8795
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257059
|
6.1 |
MEDIUM
Network
|
huawei
|
espace_integrated_access_device_firmware
|
Huawei eSpace Integrated Access Device (IAD) with software V300R001C03, V300R001C04, V300R001C06, V300R001C20, and V300R001C07 allows an attacker to trick a user into clicking a URL containing malici…
|
CWE-79
Cross-site Scripting
|
CVE-2016-8789
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257060
|
6.5 |
MEDIUM
Network
|
huawei
|
secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware
|
Huawei Secospace USG6300 with software V500R001C20 and V500R001C20SPC200PWE, Secospace USG6500 with software V500R001C20, Secospace USG6600 with software V500R001C20 and V500R001C20SPC200PWE allow re…
|
CWE-399
Resource Management Errors
|
CVE-2016-8781
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|