Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-8139 Cross-site Scripting vulnerability in Huawei Hedex Lite
HedEx Earlier than V200R006C00 versions have the stored cross-site scripting (XSS) vulnerability.
network
low complexity
huawei CWE-79
6.1
2017-11-22 CVE-2017-8136 Information Exposure vulnerability in Huawei Hedex Lite
HedEx Earlier than V200R006C00 versions has an arbitrary file download vulnerability.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-8130 Information Exposure vulnerability in Huawei UMA V200R001/V300R001
The UMA product with software V200R001 and V300R001 has an information leak vulnerability.
network
low complexity
huawei CWE-200
6.5
2017-11-22 CVE-2017-8127 Cross-site Scripting vulnerability in Huawei UMA V200R001
The UMA product with software V200R001 has a cross-site scripting (XSS) vulnerability due to insufficient input validation.
network
low complexity
huawei CWE-79
6.1
2017-11-22 CVE-2017-8125 Cross-site Scripting vulnerability in Huawei UMA V200R001/V300R001
The UMA product with software V200R001 and V300R001 has a cross-site scripting (XSS) vulnerability due to insufficient input validation.
network
low complexity
huawei CWE-79
6.1
2017-11-22 CVE-2017-8121 Information Exposure vulnerability in Huawei UMA V200R001/V300R001
The UMA product with software V200R001 and V300R001 has an information leak vulnerability.
network
low complexity
huawei CWE-200
5.3
2017-11-22 CVE-2017-2734 Resource Exhaustion vulnerability in Huawei P9 Plus Firmware
P9 Plus smartphones with software versions earlier before VIE-AL10BC00B386 have a denial of service (DoS) vulnerability.
local
low complexity
huawei CWE-400
5.5
2017-11-22 CVE-2017-2733 Information Exposure vulnerability in Huawei Honor 6X Firmware
Honor 6X smartphones with software versions earlier than BLN-AL10C00B357 and versions earlier than BLN-AL20C00B357 have an information leak vulnerability due to improper file permission configuration.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-2732 Information Exposure vulnerability in Huawei Hilink
Huawei Hilink APP Versions earlier before 5.0.25.306 has an information leak vulnerability.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-2731 Improper Input Validation vulnerability in Huawei P9 Plus Firmware
The vibrator service in P9 Plus smart phones with software versions earlier before VIE-AL10C00B386 has DoS vulnerability.
local
low complexity
huawei CWE-20
5.5