|
264981
|
7.5 |
HIGH
Local
|
huawei
|
fusionstorage
|
The maintenance module in Huawei FusionStorage V100R003C30U1 allows attackers to create documents according to special rules to obtain the OS root privilege of FusionStorage.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8803
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264982
|
6.5 |
MEDIUM
Network
|
huawei
|
secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware
|
The security policy processing module in Huawei Secospace USG6300 with software V500R001C20SPC100, V500R001C20SPC101, V500R001C20SPC200; Secospace USG6500 with software V500R001C20SPC100, V500R001C20…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8802
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264983
|
7.2 |
HIGH
Network
|
huawei
|
oceanstor_5600_v3_firmware
|
Huawei OceanStor 5600 V3 with V300R003C00C10 and earlier versions allows attackers with administrator privilege to inject a command into a specific command's parameters, and run this injected command…
|
CWE-77
Command Injection
|
CVE-2016-8801
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264984
|
7.5 |
HIGH
Network
|
huawei
|
usg5500_firmware
|
Huawei USG5500 with software V300R001C00 and V300R001C00 allows attackers to bypass the anti-DDoS module of the USGs to cause a denial of service condition on the backend server.
|
CWE-284
Improper Access Control
|
CVE-2016-8798
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264985
|
7.5 |
HIGH
Network
|
huawei
|
ar3200_firmware s12700_firmware s5300_firmware s5700_firmware s6300_firmware s6700_firmware s7700_firmware s9300_firmware s9700_firmware
|
Huawei AR3200 with software V200R007C00, V200R005C32, V200R005C20; S12700 with software V200R008C00, V200R007C00; S5300 with software V200R008C00, V200R007C00, V200R006C00; S5700 with software V200R0…
|
CWE-399
Resource Management Errors
|
CVE-2016-8797
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264986
|
7.5 |
HIGH
Network
|
huawei
|
usg9520_firmware usg9580_firmware usg9560_firmware
|
Huawei USG9520 V300R001C01, USG9560 V300R001C01, and USG9580 V300R001C01 allow unauthenticated attackers to send abnormal DHCP request packets to the affected products to trigger a DoS condition.
|
CWE-20
Improper Input Validation
|
CVE-2016-8796
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264987
|
5.9 |
MEDIUM
Network
|
huawei
|
cloudengine_5800_firmware cloudengine_6800_firmware cloudengine_12800_firmware cloudengine_7800_firmware cloudengine_8800_firmware secospace_usg6600_firmware
|
Huawei CloudEngine 12800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00; CloudEngine 5800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00,…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-8795
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264988
|
6.1 |
MEDIUM
Network
|
huawei
|
espace_integrated_access_device_firmware
|
Huawei eSpace Integrated Access Device (IAD) with software V300R001C03, V300R001C04, V300R001C06, V300R001C20, and V300R001C07 allows an attacker to trick a user into clicking a URL containing malici…
|
CWE-79
Cross-site Scripting
|
CVE-2016-8789
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264989
|
6.5 |
MEDIUM
Network
|
huawei
|
secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware
|
Huawei Secospace USG6300 with software V500R001C20 and V500R001C20SPC200PWE, Secospace USG6500 with software V500R001C20, Secospace USG6600 with software V500R001C20 and V500R001C20SPC200PWE allow re…
|
CWE-399
Resource Management Errors
|
CVE-2016-8781
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264990
|
6.5 |
MEDIUM
Network
|
huawei
|
cloudengine_6800_firmware cloudengine_7800_firmware cloudengine_8800_firmware cloudengine_12800_firmware
|
Huawei CloudEngine 6800 V100R006C00, CloudEngine 7800 V100R006C00, CloudEngine 8800 V100R006C00, and CloudEngine 12800 V100R006C00 allow remote attackers with specific permission to store massive fil…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2016-8780
|
2024-11-21 12:00 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|