PT-2016-3872 · Huawei · Huawei Mobile Wifi E5151+1
Joel Land
·
Published
2016-02-01
·
Updated
2016-11-28
·
CVE-2015-8265
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Huawei Mobile WiFi E5151 versions before E5151s-2TCPU-V200R001B146D27SP00C00
Huawei Mobile WiFi E5186 versions before V200R001B310D01SP00C00
Description
The issue allows remote attackers to spoof responses via unspecified vectors, making it easier to launch attacks by utilizing DNS query packets with a static source port.
Recommendations
For Huawei Mobile WiFi E5151 versions before E5151s-2TCPU-V200R001B146D27SP00C00, update to version E5151s-2TCPU-V200R001B146D27SP00C00 or later.
For Huawei Mobile WiFi E5186 versions before V200R001B310D01SP00C00, update to version V200R001B310D01SP00C00 or later.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Huawei Mobile Wifi E5151
Huawei Mobile Wifi E5186