CVE-2015-8085: Weak Encryption
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 make it easier for remote authenticated administrators to obtain and decrypt passwords by leveraging selection of a reversible encryption algorithm.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8085?
CVE-2015-8085 has a critical severity rating due to potential remote execution of arbitrary commands.
How do I fix CVE-2015-8085?
To fix CVE-2015-8085, update the affected Huawei AR and Quidway router firmware to the latest versions specified in the advisory.
Which Huawei devices are affected by CVE-2015-8085?
CVE-2015-8085 affects several Huawei AR routers and Quidway series routers with specific firmware versions prior to the updates.
Can CVE-2015-8085 be exploited remotely?
Yes, CVE-2015-8085 can be exploited remotely, potentially allowing unauthorized access to affected devices.
What types of vulnerabilities does CVE-2015-8085 represent?
CVE-2015-8085 represents vulnerabilities related to improper input validation and excessive privileges on impacted Huawei routers.