Huawei FusionAccess with software V100R005C10 and V100R005C20 could allow remote attackers with specific permission to inject a Lightweight Directory Access Protocol (LDAP) operation command into a specific input variable to obtain sensitive information from the database.
CPE | Name | Operator | Version |
---|---|---|---|
fusionaccess | eq | 100r5c10-v | |
fusionaccess | eq | 100r5c20-v |