CVE-2015-8265

Huawei Mobile WiFi E5151 routers with software before E5151s-2TCPU-V200R001B146D27SP00C00 and E5186 routers with software before V200R001B310D01SP00C00 allow DNS query packets using the static source port, which makes it easier for remote attackers to spoof responses via unspecified vectors.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:h:huawei:e5151:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:e5186:-:*:*:*:*:*:*:*
OR cpe:2.3:o:huawei:e5151_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:huawei:e5186_firmware:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:38

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160129-01-dns-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160129-01-dns-en - Vendor Advisory
References () http://www.securityfocus.com/bid/82246 - () http://www.securityfocus.com/bid/82246 -
References () https://www.kb.cert.org/vuls/id/972224 - Third Party Advisory, US Government Resource () https://www.kb.cert.org/vuls/id/972224 - Third Party Advisory, US Government Resource

Information

Published : 2016-02-01 21:59

Updated : 2024-11-21 02:38


NVD link : CVE-2015-8265

Mitre link : CVE-2015-8265

CVE.ORG link : CVE-2015-8265


JSON object : View

Products Affected

huawei

  • e5186_firmware
  • e5186
  • e5151_firmware
  • e5151
CWE
CWE-20

Improper Input Validation