CVE-2015-2251: Infoleak
The DeviceManager in Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to obtain sensitive information via a crafted UDS patch with JavaScript.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2251?
CVE-2015-2251 is rated as a medium severity vulnerability that potentially allows remote attackers to access sensitive information.
How do I fix CVE-2015-2251?
To fix CVE-2015-2251, upgrade your Huawei OceanStor UDS devices to the latest firmware version V100R002C01SPC102 or later.
What devices are affected by CVE-2015-2251?
CVE-2015-2251 affects Huawei OceanStor UDS devices with software versions earlier than V100R002C01SPC102.
What types of attacks are possible due to CVE-2015-2251?
CVE-2015-2251 allows remote attackers to exploit the vulnerability to obtain sensitive information through a crafted UDS patch.
Is there a workaround for CVE-2015-2251?
There is no documented workaround for CVE-2015-2251; the recommended solution is to update the firmware.