First published: Tue Nov 24 2015(Updated: )
The built-in web server in Huawei VP9660 multi-point control unit with software before V200R001C30SPC700 allows remote administrators to obtain sensitive information or cause a denial of service via a crafted message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei VP 9660 firmware | <=v200r001c30 | |
Huawei VP 9660 firmware | =v200r001c01 | |
Huawei VP 9660 firmware | =v200r001c02 | |
Huawei VP 9660 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8227 is classified as a high-severity vulnerability due to its potential to allow remote exploitation leading to sensitive information disclosure or denial of service.
To fix CVE-2015-8227, upgrade the Huawei VP9660 firmware to version V200R001C30SPC700 or later.
CVE-2015-8227 affects Huawei VP9660 firmware versions prior to V200R001C30SPC700.
CVE-2015-8227 can be exploited through crafted messages sent to the built-in web server of the device.
Administrators of Huawei VP9660 multi-point control units using vulnerable firmware versions are the primary affected users of CVE-2015-8227.