PT-2017-13998 · Huawei · Huawei Fusionsphere Openstack
Published
2017-12-22
·
Updated
2018-01-05
·
CVE-2017-15321
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Huawei FusionSphere OpenStack version V100R006C000SPC102 (NFV)
Description
The issue is caused by the use of a low-version transmission protocol by default, which could allow an attacker to intercept packets transferred by a target device, resulting in an information leak.
Recommendations
For version V100R006C000SPC102 (NFV), update the transmission protocol to a secure version to prevent information leaks.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Huawei Fusionsphere Openstack