Huawei Mobile WiFi E5151 routers with software before E5151s-2TCPU-V200R001B146D27SP00C00 and E5186 routers with software before V200R001B310D01SP00C00 allow DNS query packets using the static source port, which makes it easier for remote attackers to spoof responses via unspecified vectors.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160129-01-dns-en | Vendor Advisory |
http://www.securityfocus.com/bid/82246 | |
https://www.kb.cert.org/vuls/id/972224 | Third Party Advisory US Government Resource |
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160129-01-dns-en | Vendor Advisory |
http://www.securityfocus.com/bid/82246 | |
https://www.kb.cert.org/vuls/id/972224 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 02:38
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160129-01-dns-en - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/82246 - | |
References | () https://www.kb.cert.org/vuls/id/972224 - Third Party Advisory, US Government Resource |
Information
Published : 2016-02-01 21:59
Updated : 2024-11-21 02:38
NVD link : CVE-2015-8265
Mitre link : CVE-2015-8265
CVE.ORG link : CVE-2015-8265
JSON object : View
Products Affected
huawei
- e5186_firmware
- e5186
- e5151_firmware
- e5151
CWE
CWE-20
Improper Input Validation