SQL Injection Vulnerability in Huawei UMA V200R001C00
CVE-2017-15329
8.8HIGH
What is CVE-2017-15329?
Huawei UMA V200R001C00 is susceptible to an SQL injection vulnerability within its operation and maintenance module. An attacker, by logging in as a standard user, can send carefully crafted HTTP requests containing malicious SQL statements. The lack of proper input validation allows these crafted requests to be executed by the server, potentially enabling the attacker to manipulate the database through arbitrary SQL queries, which can lead to unauthorized data access and manipulation.
Affected Version(s)
UMA V200R001C00