CVE-2012-4960: Medium severity Huawei ACU vulnerability
The Huawei NE5000E, MA5200G, NE40E, NE80E, ATN, NE40, NE80, NE20E-X6, NE20, ME60, CX600, CX200, CX300, ACU, WLAN AC 6605, S9300, S7700, S2300, S3300, S5300, S3300HI, S5300HI, S5306, S6300, S2700, S3700, S5700, S6700, AR G3, H3C AR(OEM IN), AR 19, AR 29, AR 49, Eudemon100E, Eudemon200, Eudemon300, Eudemon500, Eudemon1000, Eudemon1000E-U/USG5300, Eudemon1000E-X/USG5500, Eudemon8080E/USG9300, Eudemon8160E/USG9300, Eudemon8000E-X/USG9500, E200E-C/USG2200, E200E-X3/USG2200, E200E-X5/USG2200, E200E-X7/USG2200, E200E-C/USG5100, E200E-X3/USG5100, E200E-X5/USG5100, E200E-X7/USG5100, E200E-B/USG2100, E200E-X1/USG2100, E200E-X2/USG2100, SVN5300, SVN2000, SVN5000, SVN3000, NIP100, NIP200, NIP1000, NIP2100, NIP2200, and NIP5100 use the DES algorithm for stored passwords, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4960?
CVE-2012-4960 is classified as a high-severity vulnerability primarily affecting various Huawei networking products.
How do I fix CVE-2012-4960?
To remediate CVE-2012-4960, update your affected Huawei devices to the latest firmware version provided by the manufacturer.
What systems are affected by CVE-2012-4960?
CVE-2012-4960 impacts multiple Huawei products, including models such as NE5000E, MA5200G, NE40E, NE80E, and various others.
What is the exploitability of CVE-2012-4960?
CVE-2012-4960 is exploitable remotely, which increases the risk of unauthorized access to network devices.
Is there a patch available for CVE-2012-4960?
Yes, patches are available through Huawei for the devices affected by CVE-2012-4960.