PT-2016-3872 · Huawei · Huawei Mobile Wifi E5151+1

Joel Land

·

Published

2016-02-01

·

Updated

2016-11-28

·

CVE-2015-8265

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Huawei Mobile WiFi E5151 versions before E5151s-2TCPU-V200R001B146D27SP00C00 Huawei Mobile WiFi E5186 versions before V200R001B310D01SP00C00
Description The issue allows remote attackers to spoof responses via unspecified vectors, making it easier to launch attacks by utilizing DNS query packets with a static source port.
Recommendations For Huawei Mobile WiFi E5151 versions before E5151s-2TCPU-V200R001B146D27SP00C00, update to version E5151s-2TCPU-V200R001B146D27SP00C00 or later. For Huawei Mobile WiFi E5186 versions before V200R001B310D01SP00C00, update to version V200R001B310D01SP00C00 or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-8265

Affected Products

Huawei Mobile Wifi E5151
Huawei Mobile Wifi E5186