RSS   Vulnerabilities for 'S3700'   RSS

2013-06-20
 
CVE-2012-6571

CWE-310
 

 
The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR routers and S2000, S3000, S3500, S3900, S5100, S5600, and S7800 switches uses predictable Session ID values, which makes it easier for remote attackers to hijack sessions via a brute-force attack.

 
 
CVE-2012-6570

CWE-119
 

 
The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR routers and S2000, S3000, S3500, S3900, S5100, S5600, S7800, and S8500 switches does not check whether HTTP data is longer than the value of the Content-Length field, which allows remote HTTP servers to conduct heap-based buffer overflow attacks and execute arbitrary code via a crafted response.

 
 
CVE-2012-6569

CWE-119
 

 
Stack-based buffer overflow in the HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR routers and S2000, S3000, S3500, S3900, S5100, S5600, S7800, and S8500 switches allows remote attackers to execute arbitrary code via a long URI.

 
 
CVE-2012-4960

CWE-310
 

 
The Huawei NE5000E, MA5200G, NE40E, NE80E, ATN, NE40, NE80, NE20E-X6, NE20, ME60, CX600, CX200, CX300, ACU, WLAN AC 6605, S9300, S7700, S2300, S3300, S5300, S3300HI, S5300HI, S5306, S6300, S2700, S3700, S5700, S6700, AR G3, H3C AR(OEM IN), AR 19, AR 29, AR 49, Eudemon100E, Eudemon200, Eudemon300, Eudemon500, Eudemon1000, Eudemon1000E-U/USG5300, Eudemon1000E-X/USG5500, Eudemon8080E/USG9300, Eudemon8160E/USG9300, Eudemon8000E-X/USG9500, E200E-C/USG2200, E200E-X3/USG2200, E200E-X5/USG2200, E200E-X7/USG2200, E200E-C/USG5100, E200E-X3/USG5100, E200E-X5/USG5100, E200E-X7/USG5100, E200E-B/USG2100, E200E-X1/USG2100, E200E-X2/USG2100, SVN5300, SVN2000, SVN5000, SVN3000, NIP100, NIP200, NIP1000, NIP2100, NIP2200, and NIP5100 use the DES algorithm for stored passwords, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.

 

 >>> Vendor: Huawei 665 Products
S8500
Versatile routing platform
D100
D100 router
Mt882 v100t002b020 arg-t
Mt882 modem firmware
Mt882 modem
E585
E585u-82
ACU
ATN
Cx200
Cx300
Cx600
Ma5200g
ME60
NE20
Ne20e-x6
NE40
Ne40e
Ne40e/80e
Ne5000e
NE80
Ne80e
S2300
S2700
S3300
S3300hi
S3700
S5300
S5300hi
S5306
S5700
S6300
S6700
S7700
S9300
Wlan ac 6605
Ar 19/29/49
Ar g3
E200 usg2200
E200 usg5100
E200e-b
E200e-c
E200e-usg2100
E200e-x1
E200e-x2
E200x3
E200x5
E200x7
Eudemon1000
Eudemon1000e-u
Eudemon1000e-x
Eudemon100e
Eudemon200
Eudemon300
Eudemon500
Eudemon8000e-x
Eudemon 8080e
Eudemon 8160e
Eudemon usg5300
Eudemon usg5500
Eudemon usg9300
Eudemon usg9500
H3c ar(oem in)
Nip100
Nip1000
Nip200
Nip2100
Nip2200
Nip5100
Svn2000
Svn3000
Svn5000
Svn5300
UTPS
Ar 18-1x
Ar 18-2x
Ar 18-3x
Ar 28/46
S2000
S3000
S3500
S3900
S5100
S5600
S7800
Quidway service process unit board s7700
Quidway service process unit board s9300
Quidway service process unit board s9700
Vp 9610
Vp 9620
Ar 1200
Ar 150
Ar 200
Ar 2200
Ar 3200
Access router
Seco versatile security manager
Mt882
See all Products for Vendor Huawei


Copyright 2024, cxsecurity.com

 

Back to Top