CVE Vulnerabilities

CVE-2016-8779

Published: Apr 02, 2017 | Modified: Apr 05, 2017
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Huawei FusionAccess with software V100R005C10 and V100R005C20 could allow remote attackers with specific permission to inject a Lightweight Directory Access Protocol (LDAP) operation command into a specific input variable to obtain sensitive information from the database.

Affected Software

Name Vendor Start Version End Version
Fusionaccess Huawei v100r005c10 (including) v100r005c10 (including)
Fusionaccess Huawei v100r005c20 (including) v100r005c20 (including)

References