First published: Mon Apr 11 2016(Updated: )
SQL injection vulnerability in Huawei Policy Center with software before V100R003C10SPC020 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors related to system databases.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Policy Center | ||
Huawei Policy Center | =v100r003c00 | |
Huawei Policy Center | =v100r003c10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE-2016-3675 vulnerability is classified as a medium severity SQL injection vulnerability.
To remediate CVE-2016-3675, update Huawei Policy Center to versions v100R003C10SPC020 or later.
CVE-2016-3675 affects remote authenticated users of Huawei Policy Center software versions prior to V100R003C10SPC020.
Exploiting CVE-2016-3675 allows attackers to execute arbitrary SQL commands on the system databases.
Currently, applying the latest software updates is the recommended action to mitigate CVE-2016-3675.