Unauthorized Access Vulnerability in Huawei Tecal E9000 Chassis Management Software
CVE-2014-9695

8.8HIGH

Key Information:

Vendor
Huawei
Vendor
CVE Published:
2 April 2017

Summary

The Hyper Module Management (HMM) software of Huawei's Tecal E9000 Chassis versions up to V100R001C00SPC160 is susceptible to an unauthorized access vulnerability. A non-super-domain user can exploit this flaw via SNMPv3 to perform privileged operations on the server, potentially leading to significant security risks. Organizations using affected versions should take immediate action to mitigate this vulnerability and secure their systems.

Affected Version(s)

Tecal E9000 Chassis V100R001C00SPC160 and earlier Tecal E9000 Chassis V100R001C00SPC160 and earlier versions

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.