Vulnerabilities > Huawei > High

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-8135 Command Injection vulnerability in Huawei Fusionsphere Openstack V100R006C00/V100R006C10
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports.
low complexity
huawei CWE-77
8.8
2017-11-22 CVE-2017-8134 Command Injection vulnerability in Huawei Fusionsphere Openstack V100R006C00/V100R006C10
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports.
low complexity
huawei CWE-77
8.8
2017-11-22 CVE-2017-8133 Command Injection vulnerability in Huawei Neteco V600R008C00/V600R008C10
Huawei iManager NetEco with software V600R008C00 and V600R008C10 has a command injection vulnerability.
network
low complexity
huawei CWE-77
8.8
2017-11-22 CVE-2017-8132 Command Injection vulnerability in Huawei Fusionsphere Openstack V100R006C00/V100R006C10
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports.
low complexity
huawei CWE-77
8.8
2017-11-22 CVE-2017-8131 Command Injection vulnerability in Huawei Fusionsphere Openstack V100R006C00/V100R006C10
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports.
low complexity
huawei CWE-77
8.8
2017-11-22 CVE-2017-2737 Unrestricted Upload of File with Dangerous Type vulnerability in Huawei Vcm5010 Firmware V100R001C10B010
VCM5010 with software versions earlier before V100R002C50SPC100 has an arbitrary file upload vulnerability.
network
low complexity
huawei CWE-434
8.8
2017-11-22 CVE-2017-2736 Command Injection vulnerability in Huawei Vcm5010 Firmware V100R001C10B010
VCM5010 with software versions earlier before V100R002C50SPC100 has a command injection vulnerability.
network
low complexity
huawei CWE-77
7.2
2017-11-22 CVE-2017-2735 Exposed Dangerous Method or Function vulnerability in Huawei Y6 PRO Firmware 9.1.0.248(C636E5R3P1)
TIT-AL00 smartphones with software versions earlier before TIT-AL00C583B214 have a exposed system interface vulnerability.
local
low complexity
huawei CWE-749
7.1
2017-11-22 CVE-2017-2729 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Honor 5A Firmware and P8 Lite Firmware
The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier than CAM-UL00C00B193 have a buffer overflow vulnerability.
local
low complexity
huawei CWE-119
7.8
2017-11-22 CVE-2017-2726 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei P10 Firmware and P10 Plus Firmware
Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer overflow vulnerability.
local
low complexity
huawei CWE-119
8.4