PT-2013-1583 · Huawei+1 · Switch+14

Kurt Grutzmacher

·

Published

2013-02-01

·

Updated

2021-04-06

·

CVE-2012-3268

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions HP Access Controller versions (affected versions not specified) HP Fabric Module versions (affected versions not specified) HP Firewall versions (affected versions not specified) HP Router versions (affected versions not specified) HP Switch versions (affected versions not specified) HP UTM Appliance versions (affected versions not specified) HP 3Com Access Controller versions (affected versions not specified) HP 3Com Router versions (affected versions not specified) HP 3Com Switch versions (affected versions not specified) HP H3C Access Controller versions (affected versions not specified) HP H3C Firewall versions (affected versions not specified) HP H3C Router versions (affected versions not specified) HP H3C Switch versions (affected versions not specified) HP H3C Switch and Route Processing Unit versions (affected versions not specified) Huawei Firewall/Gateway versions (affected versions not specified) Huawei Router versions (affected versions not specified) Huawei Switch versions (affected versions not specified) Huawei Wireless versions (affected versions not specified)
Description The issue is related to improper implementation of access control, allowing remote authenticated users to discover credentials via an SNMP request. This is possible due to the read-only community in h3c-user.mib 2.0 and hh3c-user.mib 2.0.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficiently Protected Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-3268

Affected Products

H3C Access Controller
3Com Router
3Com Switch
Access Controller
Fabric Module
Firewall
Firewall/Gateway
H3C Firewall
H3C Router
H3C Switch
H3C Switch/Route Processing Unit
Router
Switch
Ufm Appliance
Wireless