CVE-2015-8265
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
Huawei Mobile WiFi E5151 routers with software before E5151s-2TCPU-V200R001B146D27SP00C00 and E5186 routers with software before V200R001B310D01SP00C00 allow DNS query packets using the static source port, which makes it easier for remote attackers to spoof responses via unspecified vectors.
Affected (2)
Products: Huawei: E5151 Firmware, E5186 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to e5151s-2tcpu-v200r001b141d13sp00c1080 | |
| Up to v200r001b306d01c00 |
| Running on/with | Platform Versions |
|---|---|
Huawei E5151 | All versions |
Huawei E5186 | All versions |
References (6)
Source: cret@cert.org
Vendor Advisory
Source: cret@cert.org
Source: cret@cert.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Timeline
No history available yet.