CVE-2022-33735Improper Restriction of Excessive Authentication Attempts in Huawei Ws7200-10 Firmware

Severity
6.5MEDIUMNVD
EPSS
0.0%
top 87.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 20
Latest updateSep 21

Description

There is a password verification vulnerability in WS7200-10 11.0.2.13. Attackers on the LAN may use brute force cracking to obtain passwords, which may cause sensitive system information to be disclosed.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5huawei/ws7200-10_firmware11.0.2.13

🔴Vulnerability Details

2
GHSA
GHSA-rmm9-xcr8-ff62: There is a password verification vulnerability in WS7200-10 112022-09-21
CVEList
CVE-2022-33735: There is a password verification vulnerability in WS7200-10 112022-09-20
CVE-2022-33735 — Huawei vulnerability | cvebase