PT-2016-7570 · Huawei · Huawei Usg9520+3

Publicado

2016-11-16

·

Atualizado

2017-04-05

·

CVE-2016-8796

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Huawei USG9520 version V300R001C01 Huawei USG9560 version V300R001C01 Huawei USG9580 version V300R001C01
Description The issue is related to a denial of service (DoS) condition that can be triggered by sending abnormal DHCP request packets to the affected products. This can be done by unauthenticated attackers due to improper validation of specific fields in the DHCP message. Successful exploitation could lead to a DoS condition.
Recommendations For Huawei USG9520 version V300R001C01, update the software to a version that properly validates DHCP request packets. For Huawei USG9560 version V300R001C01, update the software to a version that properly validates DHCP request packets. For Huawei USG9580 version V300R001C01, update the software to a version that properly validates DHCP request packets.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-8796

Produtos afetados

Huawei Usg9520
Huawei Usg9560
Huawei Usg9580
Huawei Vrp