cbcvebase.
CVE-2015-8086
published 2016-10-03

CVE-2015-8086: Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before…

PriorityP422medium4.9CVSS 3.0
AVNACLPRHUINSUCHINAN
EPSS
0.36%
28.2th percentile
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 makes it easier for remote authenticated administrators to obtain encryption keys and ciphertext passwords via vectors related to key storage.

Affected

22 ranges
VendorProductVersion rangeFixed in
huaweiar_firmware
huaweiar_firmware
huaweiar_firmware
huaweiar_firmware
huaweiar_firmware
huaweiar_firmware
huaweiquidway_s5300_firmware
huaweiquidway_s9300_firmware
huaweiquidway_s9300_firmware
huaweiquidway_s9300_firmware
huaweis12700_firmware
huaweis12700_firmware
huaweis5300_firmware
huaweis5300_firmware
huaweis5300_firmware
huaweis5700_firmware
huaweis5700_firmware
huaweis5700_firmware
huaweis5700_firmware
huaweis5700_firmware
huaweis9300_firmware
huaweis9300_firmware

CVSS provenance

nvdv3.04.9MEDIUMCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.