Vulnerability Details CVE-2016-8789
Huawei eSpace Integrated Access Device (IAD) with software V300R001C03, V300R001C04, V300R001C06, V300R001C20, and V300R001C07 allows an attacker to trick a user into clicking a URL containing malicious scripts to obtain user information or hijack the session, aka XSS.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.9%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2016-8789
-
cpe:2.3:h:huawei:espace_integrated_access_device:-
-
cpe:2.3:o:huawei:espace_integrated_access_device_firmware:v300r001c03
-
cpe:2.3:o:huawei:espace_integrated_access_device_firmware:v300r001c04
-
cpe:2.3:o:huawei:espace_integrated_access_device_firmware:v300r001c06
-
cpe:2.3:o:huawei:espace_integrated_access_device_firmware:v300r001c07
-
cpe:2.3:o:huawei:espace_integrated_access_device_firmware:v300r001c20