Insecure HTTP Download in Huawei HiSuite PC Client Software
CVE-2016-8273
What is CVE-2016-8273?
The Huawei HiSuite PC client software version 4.0.5.300_OVE is vulnerable due to its use of insecure HTTP for downloading upgrade software packages. This flaw allows attackers to potentially perform Man-In-The-Middle (MITM) attacks, enabling them to intercept or alter the downloaded software before installation. Moreover, the software does not verify the integrity of the downloaded package, further exacerbating the risk. Users are strongly advised to implement security measures to mitigate the threat posed by this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
HiSuite 4.0.5.300_OVE HiSuite 4.0.5.300_OVE
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved