← Back

CVE-2017-17303

nvd nist
Published: Mar 9, 2018Modified: Nov 21, 2024

JSON object

Loading...
4.9
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.2 / Impact: 3.6
Source: NVD

Description

Huawei DP300 V500R002C00; V500R002C00B010; V500R002C00B011; V500R002C00B012; V500R002C00B013; V500R002C00B014; V500R002C00B017; V500R002C00B018; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC400; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; RP200 V500R002C00SPC200; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE30 V100R001C10SPC300; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700B010; V500R002C00SPC200; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE40 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE50 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE60 V100R001C10; V100R001C10B001; V100R001C10B002; V100R001C10B010; V100R001C10B011; V100R001C10B012; V100R001C10B013; V100R001C10B014; V100R001C10B016; V100R001C10B017; V100R001C10B018; V100R001C10B019; V100R001C10SPC400; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700; V100R001C10SPC800B011; V100R001C10SPC900; V500R002C00; V500R002C00B010; V500R002C00B011; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; V500R002C00SPCb00; V500R002C00SPCd00; V500R002C00SPCe00; V600R006C00; V600R006C00SPC100; V600R006C00SPC200; V600R006C00SPC300 use the CIDAM protocol, which contains sensitive information in the message when it is implemented. So these products has an information disclosure vulnerability. An authenticated remote attacker could track and get the message of a target system. Successful exploit could allow the attacker to get the information and cause the sensitive information disclosure.

Affected (83)

6 products
Dp300 Firmware
Rp200 Firmware
Te30 Firmware
Te40 Firmware
Te50 Firmware
Te60 Firmware
Configuration A
17 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v500r002c00
Version v500r002c00b010
Version v500r002c00b011
Version v500r002c00b012
Version v500r002c00b013
Version v500r002c00b014
Version v500r002c00b017
Version v500r002c00b018
Version v500r002c00spc100
Version v500r002c00spc200
Version v500r002c00spc300
Version v500r002c00spc400
Version v500r002c00spc500
Version v500r002c00spc600
Version v500r002c00spc800
Version v500r002c00spc900
Version v500r002c00spca00
Running on/withPlatform Versions
Huawei
Dp300
All versions
Configuration B
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v500r002c00spc200
Version v600r006c00
Version v600r006c00spc200
Version v600r006c00spc300
Running on/withPlatform Versions
Huawei
Rp200
All versions
Configuration C
13 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v100r001c10spc300
Version v100r001c10spc500
Version v100r001c10spc600
Version v100r001c10spc700b010
Version v500r002c00spc200
Version v500r002c00spc500
Version v500r002c00spc600
Version v500r002c00spc700
Version v500r002c00spc900
Version v500r002c00spcb00
Version v600r006c00
Version v600r006c00spc200
Version v600r006c00spc300
Running on/withPlatform Versions
Huawei
Te30
All versions
Configuration D
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v500r002c00spc600
Version v500r002c00spc700
Version v500r002c00spc900
Version v500r002c00spcb00
Version v600r006c00
Version v600r006c00spc200
Version v600r006c00spc300
Running on/withPlatform Versions
Huawei
Te40
All versions
Configuration E
6 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v500r002c00spc600
Version v500r002c00spc700
Version v500r002c00spcb00
Version v600r006c00
Version v600r006c00spc200
Version v600r006c00spc300
Running on/withPlatform Versions
Huawei
Te50
All versions
Configuration F
36 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v100r001c10
Version v100r001c10b001
Version v100r001c10b002
Version v100r001c10b010
Version v100r001c10b011
Version v100r001c10b012
Version v100r001c10b013
Version v100r001c10b014
Version v100r001c10b016
Version v100r001c10b017
Version v100r001c10b018
Version v100r001c10b019
Version v100r001c10spc400
Version v100r001c10spc500
Version v100r001c10spc600
Version v100r001c10spc700
Version v100r001c10spc800b011
Version v100r001c10spc900
Version v500r002c00
Version v500r002c00b010
Version v500r002c00b011
Version v500r002c00spc100
Version v500r002c00spc200
Version v500r002c00spc300
Version v500r002c00spc600
Version v500r002c00spc700
Version v500r002c00spc800
Version v500r002c00spc900
Version v500r002c00spca00
Version v500r002c00spcb00
Version v500r002c00spcd00
Version v500r002c00spce00
Version v600r006c00
Version v600r006c00spc100
Version v600r006c00spc200
Version v600r006c00spc300
Running on/withPlatform Versions
Huawei
Te60
All versions

References (2)

Timeline

No history available yet.