PT-2016-3891 · Huawei · Huawei Vcn500

Published

2016-01-11

·

Updated

2016-01-11

·

CVE-2015-8335

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Huawei VCN500 versions prior to V100R002C00SPC201
Description The issue allows remote authenticated users to obtain sensitive information by triggering log generation and then reading the log, as passwords are logged in cleartext.
Recommendations For versions prior to V100R002C00SPC201, update to V100R002C00SPC201 or later to resolve the issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-8335

Affected Products

Huawei Vcn500