← Back

CVE-2015-8331

nvd nist
Published: Jan 11, 2016Modified: May 6, 2026

JSON object

Loading...
7.4
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 2.2 / Impact: 5.2
Source: NVD

Description

The Operation and Maintenance Unit (OMU) in Huawei VCN500 with software before V100R002C00SPC200 does not properly invalidate the session ID when an "abnormal exit" occurs, which allows remote attackers to conduct replay attacks via the session ID.

Affected (1)

Products: Huawei: Vcn500
1 product
Vcn500
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v100r002c00spc200b010
Running on/withPlatform Versions
Huawei
Vcn500
All versions

Timeline

No history available yet.