Vulnerabilities > CVE-2017-8196 - Incorrect Authorization vulnerability in Huawei Fusionsphere V100R006C00Spc102(Nfv)

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
huawei
CWE-863

Summary

FusionSphere V100R006C00SPC102(NFV) has an incorrect authorization vulnerability. An authenticated attacker could execute commands that he/she should have had no permission to perform, thereby querying, modifying, and deleting certain service data and making the service unavailable.

Vulnerable Configurations

Part Description Count
OS
Huawei
1

Common Weakness Enumeration (CWE)