Improper Access Control in Huawei Datacom Product
CVE-2022-48615

4.8MEDIUM

Key Information:

Vendor
Huawei
Status
Vendor
CVE Published:
12 December 2023

Summary

An improper access control vulnerability has been identified in Huawei's datacom product, allowing attackers to potentially gain unauthorized access to sensitive device information. This vulnerability emphasizes the importance of securing access controls to prevent exploitation and safeguard against data breaches.

Affected Version(s)

AR6000 V300R019C10SPC300

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.