|
248061
|
7.5 |
HIGH
Network
|
huawei
|
ac6005_firmware ac6605_firmware ar1200_firmware ar200_firmware ar3200_firmware cloudengine_12800_firmware cloudengine_5800_firmware cloudengine_6800_firmware cloudengine_7800_…
|
AC6005 V200R006C10SPC200,AC6605 V200R006C10SPC200,AR1200 with software V200R005C10CP0582T, V200R005C10HP0581T, V200R005C20SPC026T,AR200 with software V200R005C20SPC026T,AR3200 V200R005C20SPC026T,Clou…
|
CWE-20
Improper Input Validation
|
CVE-2017-8147
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248062
|
7.8 |
HIGH
Local
|
huawei
|
mate_9_firmware mate_9_pro_firmware
|
The Trusted Execution Environment (TEE) module driver of Mate 9 and Mate 9 Pro smart phones with software versions earlier than MHA-AL00BC00B221 and versions earlier than LON-AL00BC00B221 has a use a…
|
CWE-416
Use After Free
|
CVE-2017-8142
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248063
|
8.8 |
HIGH
Network
|
huawei
|
hedex_lite
|
HedEx Earlier than V200R006C00 versions has a cross-site request forgery (CSRF) vulnerability. An attacker could trick a user into accessing a website containing malicious scripts which may tamper wi…
|
CWE-352
Origin Validation Error
|
CVE-2017-8138
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248064
|
7.8 |
HIGH
Local
|
huawei
|
hedex_lite
|
HedEx Earlier than V200R006C00 versions has a dynamic link library (DLL) hijacking vulnerability due to calling the DDL file by accessing a relative path. An attacker could exploit this vulnerability…
|
CWE-426
Untrusted Search Path
|
CVE-2017-8137
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248065
|
5.5 |
MEDIUM
Local
|
huawei
|
hedex_lite
|
HedEx Earlier than V200R006C00 versions has an arbitrary file download vulnerability. An attacker could exploit it to download arbitrary files on a target device to cause information leak.
|
CWE-200
Information Exposure
|
CVE-2017-8136
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248066
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8135
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248067
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8134
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248068
|
8.8 |
HIGH
Network
|
huawei
|
neteco
|
Huawei iManager NetEco with software V600R008C00 and V600R008C10 has a command injection vulnerability. An authenticated, remote attacker could exploit this vulnerability to send malicious packets to…
|
CWE-77
Command Injection
|
CVE-2017-8133
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248069
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8132
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248070
|
8.8 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An unauthenticated att…
|
CWE-77
Command Injection
|
CVE-2017-8131
|
2024-11-21 12:33 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|