Vulnerability Details CVE-2016-8273
Huawei PC client software HiSuite 4.0.5.300_OVE uses insecure HTTP for upgrade software package download and does not check the integrity of the software package before installing; an attacker can launch an MITM attack to interrupt or replace the downloaded software package and further compromise the PC.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 2.0%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.9
Products affected by CVE-2016-8273
-
cpe:2.3:a:huawei:hisuite:4.0.5.300_ove