Huawei S3300 Firmware vulnerabilities

6 known vulnerabilities affecting huawei/s3300_firmware.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2014-5394MEDIUMCVSS 5.9vv100r006c052018-01-08
CVE-2014-5394 [MEDIUM] CWE-200 CVE-2014-5394: Multiple Huawei Campus switches allow remote attackers to enumerate usernames via vectors involving Multiple Huawei Campus switches allow remote attackers to enumerate usernames via vectors involving use of SSH by the maintenance terminal.
nvd
CVE-2017-2712MEDIUMCVSS 5.3vv100r006c052017-11-22
CVE-2017-2712 [MEDIUM] CWE-417 CVE-2017-2712: S3300 V100R006C05 have an Ethernet in the First Mile (EFM) flapping vulnerability due to the lack of S3300 V100R006C05 have an Ethernet in the First Mile (EFM) flapping vulnerability due to the lack of type-length-value (TLV) consistency check. An attacker may craft malformed packets and send them to a device to cause EFM flapping.
nvd
CVE-2015-3913HIGHCVSS 7.5vv100r006c00vv100r006c03+1 more2017-06-08
CVE-2015-3913 [HIGH] CWE-20 CVE-2015-3913: The IP stack in multiple Huawei Campus series switch models allows remote attackers to cause a denia The IP stack in multiple Huawei Campus series switch models allows remote attackers to cause a denial of service (reboot) via a crafted ICMP request message.
nvd
CVE-2014-3223HIGHCVSS 7.5vv100r006c00spc800vv100r006c01spc100+1 more2017-04-02
CVE-2014-3223 [HIGH] CWE-19 CVE-2014-3223: Huawei S9300 with software before V100R006SPH013 and S2300,S3300,S5300,S6300 with software before V1 Huawei S9300 with software before V100R006SPH013 and S2300,S3300,S5300,S6300 with software before V100R006SPH010 support Y.1731 and therefore have the Y.1731 vulnerability in processing special packets. The vulnerability causes the restart of switches.
nvd
CVE-2015-8676HIGHCVSS 7.5≥ v100r006c05, < v100r006sph0222016-04-14
CVE-2015-8676 [HIGH] CWE-119 CVE-2015-8676: Memory leak in Huawei S5300EI, S5300SI, S5310HI, S6300EI/ S2350EI, and S5300LI Campus series switche Memory leak in Huawei S5300EI, S5300SI, S5310HI, S6300EI/ S2350EI, and S5300LI Campus series switches with software V200R001C00 before V200R001SPH018, V200R002C00 before V200R003SPH011, and V200R003C00 before V200R003SPH011; S9300, S7700, and S9700 Campus series switches with software V200R001C00 before V200R001SPH023, V200R002C00 before V200R003SPH011,
nvd
CVE-2015-8677MEDIUMCVSS 6.5≥ v100r006c05, < v100r006sph0222016-04-14
CVE-2015-8677 [MEDIUM] CWE-399 CVE-2015-8677: Memory leak in Huawei S5300EI, S5300SI, S5310HI, and S6300EI Campus series switches with software V2 Memory leak in Huawei S5300EI, S5300SI, S5310HI, and S6300EI Campus series switches with software V200R003C00 before V200R003SPH011 and V200R005C00 before V200R005SPH008; S2350EI and S5300LI Campus series switches with software V200R003C00 before V200R003SPH011, V200R005C00 before V200R005SPH008, and V200R006C00 before V200R006SPH002; S9300, S7700, an
nvd