Vulnerabilities
Vulnerable Software
Huawei:  >> Vcn500  Security Vulnerabilities
SQL injection vulnerability in the Operation and Maintenance Unit (OMU) in Huawei VCN500 before V100R002C00SPC201 allows remote authenticated users to execute arbitrary SQL commands via a crafted HTTP request.
CVSS Score
8.8
EPSS Score
0.002
Published
2017-08-29
Huawei VCN500 with software before V100R002C00SPC201 logs passwords in cleartext, which allows remote authenticated users to obtain sensitive information by triggering log generation and then reading the log.
CVSS Score
6.5
EPSS Score
0.001
Published
2016-01-11
The Operation and Maintenance Unit (OMU) in Huawei VCN500 with software before V100R002C00SPC200 allows remote authenticated users to change the IP address of the media server via crafted packets.
CVSS Score
7.1
EPSS Score
0.004
Published
2016-01-11
The Operation and Maintenance Unit (OMU) in Huawei VCN500 with software before V100R002C00SPC200 does not properly invalidate the session ID when an "abnormal exit" occurs, which allows remote attackers to conduct replay attacks via the session ID.
CVSS Score
7.4
EPSS Score
0.001
Published
2016-01-11


Contact Us

Shodan ® - All rights reserved