Unauthorized Access Vulnerability in Huawei Tecal E9000 Chassis Management Software
CVE-2014-9695
8.8HIGH
Key Information:
- Vendor
- Huawei
- Vendor
- CVE Published:
- 2 April 2017
Summary
The Hyper Module Management (HMM) software of Huawei's Tecal E9000 Chassis versions up to V100R001C00SPC160 is susceptible to an unauthorized access vulnerability. A non-super-domain user can exploit this flaw via SNMPv3 to perform privileged operations on the server, potentially leading to significant security risks. Organizations using affected versions should take immediate action to mitigate this vulnerability and secure their systems.
Affected Version(s)
Tecal E9000 Chassis V100R001C00SPC160 and earlier Tecal E9000 Chassis V100R001C00SPC160 and earlier versions
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved