|
247881
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8134
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247882
|
8.8 |
HIGH
Network
|
huawei
|
neteco
|
Huawei iManager NetEco with software V600R008C00 and V600R008C10 has a command injection vulnerability. An authenticated, remote attacker could exploit this vulnerability to send malicious packets to…
|
CWE-77
Command Injection
|
CVE-2017-8133
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247883
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8132
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247884
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8131
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247885
|
6.5 |
MEDIUM
Network
|
huawei
|
uma
|
The UMA product with software V200R001 and V300R001 has an information leak vulnerability. An attacker could exploit them to obtain some sensitive information, causing information leak.
|
CWE-200
Information Exposure
|
CVE-2017-8130
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247886
|
9.8 |
CRITICAL
Network
|
huawei
|
uma
|
The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
|
CWE-20
Improper Input Validation
|
CVE-2017-8129
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247887
|
9.8 |
CRITICAL
Network
|
huawei
|
uma
|
The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
|
CWE-20
Improper Input Validation
|
CVE-2017-8128
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247888
|
6.1 |
MEDIUM
Network
|
huawei
|
uma
|
The UMA product with software V200R001 has a cross-site scripting (XSS) vulnerability due to insufficient input validation. An attacker could craft malicious links or scripts to launch XSS attacks.
|
CWE-79
Cross-site Scripting
|
CVE-2017-8127
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247889
|
9.8 |
CRITICAL
Network
|
huawei
|
uma
|
The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packets to exploit…
|
CWE-20
Improper Input Validation
|
CVE-2017-8126
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247890
|
6.1 |
MEDIUM
Network
|
huawei
|
uma
|
The UMA product with software V200R001 and V300R001 has a cross-site scripting (XSS) vulnerability due to insufficient input validation. An attacker could craft malicious links or scripts to launch X…
|
CWE-79
Cross-site Scripting
|
CVE-2017-8125
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|