← Back

CVE-2014-9137

nvd nist
Published: Apr 2, 2017Modified: May 13, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Huawei USG9500 with software V200R001C01SPC800 and earlier versions, V300R001C00; USG2100 with software V300R001C00SPC900 and earlier versions; USG2200 with software V300R001C00SPC900; USG5100 with software V300R001C00SPC900 could allow an unauthenticated, remote attacker to conduct a CSRF attack against the user of the web interface.

Affected (8)

6 products
Fusionmanager
Usg9500 Firmware
Usg2100 Firmware
Usg2200 Firmware
Usg5100 Firmware
Usg5500 Firmware
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Huawei
Version v100r002c03
Version v100r003c00
Configuration B
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Up to v200r001c01spc800
Version v300r001c00
Running on/withPlatform Versions
Huawei
Usg9500
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to v300r001c00spc900
Running on/withPlatform Versions
Huawei
Usg2100
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to v300r001c00spc900
Running on/withPlatform Versions
Huawei
Usg2200
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to v300r001c00spc900
Running on/withPlatform Versions
Huawei
Usg5100
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to v300r001c00spc900
Running on/withPlatform Versions
Huawei
Usg5500
All versions

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.