CVE-2016-6824

Severity
6.5MEDIUM
EPSS
0.2%
top 58.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 22
Latest updateMay 17

Description

Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial of service (device restart) via crafted CAPWAP packets.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages4 packages

NVDhuawei/acu2_firmwarev200r005c10+1
NVDhuawei/ac6003_firmwarev200r005c10+1
NVDhuawei/ac6005_firmwarev200r005c10+1
NVDhuawei/ac6605_firmwarev200r005c10+1

🔴Vulnerability Details

2
GHSA
GHSA-mxg4-wf3v-m635: Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial2022-05-17
CVEList
CVE-2016-6824: Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial2016-09-22
CVE-2016-6824 (MEDIUM CVSS 6.5) | Huawei AC6003 | cvebase.io