PT-2012-6211 · Huawei · Huawei E585

John Bird

·

Publicado

2012-12-19

·

Atualizado

2013-01-29

·

CVE-2012-5968

CVSS v2.0

4.8

Média

VetorAV:A/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Huawei E585 device (affected versions not specified)
Description The issue concerns the lack of validation for the status of admin sessions. This allows remote attackers to obtain sensitive user information and the session ID, and modify data, by leveraging access to the LAN network.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-5968

Produtos afetados

Huawei E585