cbcvebase.
CVE-2015-2254
published 2019-03-13

CVE-2015-2254: Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resulting in…

PriorityP344critical9.1CVSS 3.0
AVNACLPRNUINSUCNIHAH
EPSS
0.87%
54.5th percentile
Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resulting in the deletion of directory files and compromise of system functions when loading a patch.

Affected

1 ranges
VendorProductVersion rangeFixed in
huaweioceanstor_uds_firmware< 100r002c01spc102100r002c01spc102

CVSS provenance

nvdv3.09.1CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.