CVE-2015-2254

Severity
9.1CRITICAL
EPSS
0.3%
top 48.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 13
Latest updateMay 14

Description

Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resulting in the deletion of directory files and compromise of system functions when loading a patch.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:HExploitability: 3.9 | Impact: 5.2

Affected Packages1 packages

NVDhuawei/oceanstor_uds_firmware< 100r002c01spc102

🔴Vulnerability Details

2
GHSA
GHSA-j2qg-p3cm-7qgh: Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resul2022-05-14
CVEList
CVE-2015-2254: Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resul2019-03-13
CVE-2015-2254 (CRITICAL CVSS 9.1) | Huawei OceanStor UDS devices with s | cvebase.io