Huawei Cloudengine 12800 Firmware vulnerabilities

28 known vulnerabilities affecting huawei/cloudengine_12800_firmware.

Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH11MEDIUM14LOW1

Vulnerabilities

Page 2 of 2
CVE-2016-8782MEDIUMCVSS 5.3vv100r003c00vv100r003c10+3 more2018-03-09
CVE-2016-8782 [MEDIUM] CWE-399 CVE-2016-8782: Huawei CloudEngine 12800 V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00 have a memo Huawei CloudEngine 12800 V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00 have a memory leak vulnerability. An unauthenticated attacker may send specific Label Distribution Protocol (LDP) packets to the devices repeatedly. Due to improper validation of some specific fields of the packet, the LDP processing module does not release the me
nvd
CVE-2017-17301CRITICALCVSS 9.8vv100r003c00vv100r003c10+4 more2018-02-15
CVE-2017-17301 [CRITICAL] CWE-295 CVE-2017-17301: Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, AR1200 V200R005C20, V200R005C32, Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, AR1200 V200R005C20, V200R005C32, V200R006C10, V200R007C00, V200R007C01, V200R007C02, V200R008C20, AR1200-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, AR150 V200R006C10, V200R007C00, V200R007C01, V200R007C02, V200R008C20, AR160 V200R005C32, V200R006C10, V200R007C00, V200R007
nvd
CVE-2017-15349HIGHCVSS 7.5vv100r003c00vv100r005c00+2 more2018-02-15
CVE-2017-15349 [HIGH] CWE-772 CVE-2017-15349: Huawei CloudEngine 12800 V100R003C00, V100R005C00, V100R005C10, V100R006C00,CloudEngine 5800 V100R00 Huawei CloudEngine 12800 V100R003C00, V100R005C00, V100R005C10, V100R006C00,CloudEngine 5800 V100R003C00, V100R005C00, V100R005C10, V100R006C00,CloudEngine 6800 V100R003C00, V100R005C00, V100R005C10, V100R006C00,CloudEngine 7800 V100R003C00, V100R005C00, V100R005C10, V100R006C00 have a memory leak vulnerability. An unauthenticated attacker may send sp
nvd
CVE-2017-8147HIGHCVSS 7.5vv100r003c00vv100r005c00+3 more2017-11-22
CVE-2017-8147 [HIGH] CWE-20 CVE-2017-8147: AC6005 V200R006C10SPC200,AC6605 V200R006C10SPC200,AR1200 with software V200R005C10CP0582T, V200R005C AC6005 V200R006C10SPC200,AC6605 V200R006C10SPC200,AR1200 with software V200R005C10CP0582T, V200R005C10HP0581T, V200R005C20SPC026T,AR200 with software V200R005C20SPC026T,AR3200 V200R005C20SPC026T,CloudEngine 12800 with software V100R003C00, V100R005C00, V100R005C10, V100R006C00, V200R001C00,CloudEngine 5800 with software V100R003C00, V100R005C00, V100R005
nvd
CVE-2016-8790MEDIUMCVSS 5.7vv100r003c10vv100r005c00+2 more2017-04-02
CVE-2016-8790 [MEDIUM] CWE-119 CVE-2016-8790: Huawei CloudEngine 5800 with software before V200R001C00SPC700, CloudEngine 6800 with software befor Huawei CloudEngine 5800 with software before V200R001C00SPC700, CloudEngine 6800 with software before V200R001C00SPC700, CloudEngine 7800 with software before V200R001C00SPC700, CloudEngine 8800 with software before V200R001C00SPC700, CloudEngine 12800 with software before V200R001C00SPC700 could allow the attacker to exploit a buffer overflow vulnera
nvd
CVE-2016-8795MEDIUMCVSS 5.9vv100r002c00vv100r003c00+4 more2017-04-02
CVE-2016-8795 [MEDIUM] CWE-190 CVE-2016-8795: Huawei CloudEngine 12800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00, V100R005C Huawei CloudEngine 12800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00; CloudEngine 5800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00; CloudEngine 6800 with software V100R002C00, V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00; CloudEngine 7800 w
nvd
CVE-2016-8780MEDIUMCVSS 6.5vv100r006c002017-04-02
CVE-2016-8780 [MEDIUM] CWE-400 CVE-2016-8780: Huawei CloudEngine 6800 V100R006C00, CloudEngine 7800 V100R006C00, CloudEngine 8800 V100R006C00, and Huawei CloudEngine 6800 V100R006C00, CloudEngine 7800 V100R006C00, CloudEngine 8800 V100R006C00, and CloudEngine 12800 V100R006C00 allow remote attackers with specific permission to store massive files to exhaust the shared storage space, leading to a DoS condition.
nvd
CVE-2016-6178CRITICALCVSS 9.8vv100r003c00vv100r003c10+2 more2016-08-02
CVE-2016-6178 [CRITICAL] CWE-20 CVE-2016-6178: Huawei NE40E and CX600 devices with software before V800R007SPH017; PTN 6900-2-M8 devices with softw Huawei NE40E and CX600 devices with software before V800R007SPH017; PTN 6900-2-M8 devices with software before V800R007SPH019; NE5000E devices with software before V800R006SPH018; and CloudEngine devices 12800 with software before V100R003SPH010 and V100R005 before V100R005SPH006 allow remote attackers with control plane access to cause a denial of s
nvd