Lucene search

K
huaweiHuawei TechnologiesHUAWEI-SA-20150429-01-E355S
HistoryApr 29, 2015 - 12:00 a.m.

Security Advisory-Information Disclosure Vulnerability on E355s Mobile WiFi

2015-04-2900:00:00
Huawei Technologies
www.huawei.com
14

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.003

Percentile

69.4%

E355s have an information disclosure vulnerability that could be exploited by an attacker to graft attack commands or capture network communications to obtain the configuration and user information without login (Vulnerability ID: HWPSIRT-2015-02002).

This Vulnerability has been assigned Common Vulnerabilities and Exposures (CVE) ID: CVE-2015-3912.

Affected configurations

Vulners
Node
huaweie355s_mobile_wifi_firmwareMatch22.158.01.00.625
OR
huaweie355s_mobile_wifi_firmwareMatch11.011.04.00.625
VendorProductVersionCPE
huaweie355s_mobile_wifi_firmware22.158.01.00.625cpe:2.3:o:huawei:e355s_mobile_wifi_firmware:22.158.01.00.625:*:*:*:*:*:*:*
huaweie355s_mobile_wifi_firmware11.011.04.00.625cpe:2.3:o:huawei:e355s_mobile_wifi_firmware:11.011.04.00.625:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.003

Percentile

69.4%

Related for HUAWEI-SA-20150429-01-E355S