|
252811
|
7.5 |
HIGH
Network
|
flexense
|
sysgauge
|
In Flexense SysGauge Server 3.6.18, the Control Protocol suffers from a denial of service. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9221.
|
CWE-20
Improper Input Validation
|
CVE-2017-15667
|
2024-11-21 12:14 |
2017-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252812
|
7.5 |
HIGH
Network
|
huawei
|
hg8245h_firmware
|
Huawei HG8245H version earlier than V300R018C00SPC110 has an authentication bypass vulnerability. An attacker can access a specific URL of the affect product. Due to improper verification of the priv…
|
CWE-200
Information Exposure
|
CVE-2017-15328
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252813
|
7.5 |
HIGH
Network
|
huawei
|
s5700_firmware s6700_firmware
|
Huawei S5700 and S6700 with software of V200R005C00 have a DoS vulnerability due to insufficient validation of the Network Quality Analysis (NQA) packets. A remote attacker could exploit this vulnera…
|
CWE-20
Improper Input Validation
|
CVE-2017-15324
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252814
|
6.5 |
MEDIUM
Adjacent
|
huawei
|
baggio-l03a_firmware
|
Some Huawei smartphones with software of BGO-L03C158B003CUSTC158D001 and BGO-L03C331B009CUSTC331D001 have a DoS vulnerability due to insufficient input validation. An attacker could exploit this vuln…
|
CWE-20
Improper Input Validation
|
CVE-2017-15322
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252815
|
3.7 |
LOW
Network
|
huawei
|
fusionsphere_openstack
|
Huawei FusionSphere OpenStack V100R006C000SPC102 (NFV) has an information leak vulnerability due to the use of a low version transmission protocol by default. An attacker could intercept packets tran…
|
CWE-200
Information Exposure
|
CVE-2017-15321
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252816
|
7.5 |
HIGH
Network
|
huawei
|
rp200_firmware te30_firmware te40_firmware te50_firmware te60_firmware
|
RP200 V500R002C00, V600R006C00; TE30 V100R001C10, V500R002C00, V600R006C00; TE40 V500R002C00, V600R006C00; TE50 V500R002C00, V600R006C00; TE60 V100R001C10, V500R002C00, V600R006C00 have an out-of-bou…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-15320
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252817
|
7.5 |
HIGH
Network
|
huawei
|
rp200_firmware te30_firmware te40_firmware te50_firmware te60_firmware
|
RP200 V500R002C00, V600R006C00; TE30 V100R001C10, V500R002C00, V600R006C00; TE40 V500R002C00, V600R006C00; TE50 V500R002C00, V600R006C00; TE60 V100R001C10, V500R002C00, V600R006C00 have an out-of-bou…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-15319
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252818
|
7.8 |
HIGH
Local
|
huawei
|
mate_9_firmware mate_9_pro_firmware
|
The GPU driver of Mate 9 Huawei smart phones with software before MHA-AL00B 8.0.0.334(C00) and Mate 9 Pro Huawei smart phones with software before LON-AL00B 8.0.0.334(C00) has a memory double free vu…
|
CWE-415
Double Free
|
CVE-2017-15316
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252819
|
8.8 |
HIGH
Network
|
huawei
|
smartcare
|
Huawei SmartCare V200R003C10 has a CSV injection vulnerability. An remote authenticated attacker could inject malicious CSV expression to the affected device.
|
CWE-74
Injection
|
CVE-2017-15313
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252820
|
5.4 |
MEDIUM
Network
|
huawei
|
smartcare
|
Huawei SmartCare V200R003C10 has a stored XSS (cross-site scripting) vulnerability in the dashboard module. A remote authenticated attacker could exploit this vulnerability to inject malicious script…
|
CWE-79
Cross-site Scripting
|
CVE-2017-15312
|
2024-11-21 12:14 |
2017-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|