Huawei S5300 Campus Series switches with software before V200R005SPH008 do not mask the password when uploading files, which allows physically proximate attackers to obtain sensitive password information by reading the display.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160112-01-switch-en | Vendor Advisory |
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160112-01-switch-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 02:38
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160112-01-switch-en - Vendor Advisory |
Information
Published : 2016-01-15 19:59
Updated : 2024-11-21 02:38
NVD link : CVE-2015-8675
Mitre link : CVE-2015-8675
CVE.ORG link : CVE-2015-8675
JSON object : View
Products Affected
huawei
- s5300
- s5300_firmware
CWE
CWE-255
Credentials Management Errors