Vulnerability Details CVE-2016-5234
Buffer overflow in Huawei VP9660, VP9650, and VP9630 multipoint control unit devices with software before V500R002C00SPC200 and RSE6500 videoconference devices with software before V500R002C00SPC100, when an unspecified service is enabled, allows remote attackers to execute arbitrary code via a crafted packet, aka HWPSIRT-2016-05054.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.017
EPSS Ranking 81.1%
CVSS Severity
CVSS v3 Score 8.1
CVSS v2 Score 9.3
Products affected by CVE-2016-5234
-
cpe:2.3:h:huawei:rse6500:-
-
cpe:2.3:h:huawei:vp9630:-
-
cpe:2.3:h:huawei:vp9650:-
-
cpe:2.3:h:huawei:vp9660:-
-
cpe:2.3:o:huawei:rse6500_firmware:v100r001c00
-
cpe:2.3:o:huawei:vp9600_series_firmware:v200r001c01
-
cpe:2.3:o:huawei:vp9600_series_firmware:v200r001c02
-
cpe:2.3:o:huawei:vp9600_series_firmware:v200r001c30