Vulnerabilities > Huawei > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-02-15 CVE-2017-17186 Improper Input Validation vulnerability in Huawei products
Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C10, V500R002C00, V600R006C00 have a DoS vulnerability.
network
low complexity
huawei CWE-20
5.4
2018-02-15 CVE-2017-17185 Out-of-bounds Read vulnerability in Huawei products
Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C10, V500R002C00, V600R006C00 have a out-of-bounds read vulnerability.
network
low complexity
huawei CWE-125
4.3
2018-02-15 CVE-2017-17184 Integer Overflow or Wraparound vulnerability in Huawei products
Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C10, V500R002C00, V600R006C00 have an integer overflow vulnerability.
network
low complexity
huawei CWE-190
4.3
2018-02-15 CVE-2017-17183 Integer Overflow or Wraparound vulnerability in Huawei products
Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C10, V500R002C00, V600R006C00 have an integer overflow vulnerability.
network
low complexity
huawei CWE-190
4.3
2018-02-15 CVE-2017-17182 Out-of-bounds Read vulnerability in Huawei products
Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C10, V500R002C00, V600R006C00 have a out-of-bounds read vulnerability.
network
low complexity
huawei CWE-125
4.3
2018-02-15 CVE-2017-17166 Resource Exhaustion vulnerability in Huawei products
Huawei DP300 V500R002C00, Secospace USG6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, TP3206 V100R002C00, VP9660 V500R002C00, V500R002C10 have a resource exhaustion vulnerability.
network
low complexity
huawei CWE-400
5.3
2018-02-15 CVE-2017-17164 Missing Release of Resource after Effective Lifetime vulnerability in Huawei Secospace Antiddos8000 Firmware V500R001C20Spc500
Huawei Secospace AntiDDoS8000 V500R001C20SPC500 have a memory leak vulnerability due to memory don't be released when the system open some function.
network
low complexity
huawei CWE-772
5.3
2018-02-15 CVE-2017-17163 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Secospace Usg6600 Firmware V500R001C30Spc100
Huawei Secospace USG6600 V500R001C30SPC100 has an Out-of-Bounds memory access vulnerability due to insufficient verification.
local
low complexity
huawei CWE-119
5.5
2018-02-15 CVE-2017-17162 Missing Release of Resource after Effective Lifetime vulnerability in Huawei Secospace Usg6600 Firmware and Usg9500 Firmware
Huawei Secospace USG6600 V500R001C30SPC100, Secospace USG6600 V500R001C30SPC200, Secospace USG6600 V500R001C30SPC300, USG9500 V500R001C30SPC100, USG9500 V500R001C30SPC200, USG9500 V500R001C30SPC300 have a memory leak vulnerability due to memory don't be released when an local authenticated attacker execute special commands many times.
local
low complexity
huawei CWE-772
5.5
2018-02-15 CVE-2017-17161 Improper Authentication vulnerability in Huawei Duke-L09 Firmware
The 'Find Phone' function in some Huawei smart phones with software earlier than Duke-L09C10B186 versions, earlier than Duke-L09C432B187 versions, earlier than Duke-L09C636B186 versions has an authentication bypass vulnerability.
low complexity
huawei CWE-287
6.8