PT-2016-7125 · Huawei · Huawei Fusioncompute

Published

2016-09-26

·

Updated

2019-10-09

·

CVE-2016-6827

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Huawei FusionCompute versions prior to V100R005C10CP7002
Description The issue allows remote authenticated users to obtain sensitive information due to the storage of cleartext AES keys in a file.
Recommendations For versions prior to V100R005C10CP7002, update to V100R005C10CP7002 or later to resolve the issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-6827

Affected Products

Huawei Fusioncompute