CVE-2016-8278: Input Validation
Published Oct 3, 2016
·Updated
Huawei USG9520, USG9560, and USG9580 unified security gateways with software before V300R001C01SPCa00 allow remote attackers to cause a denial of service (device restart) via an unspecified URL.
Affected Software
3 affected components
Huawei USG9520=v300r001c01
Huawei USG9560=v300r001c01
Huawei USG9580=v300r001c01
Event History
Oct 3, 2016
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-8278?
CVE-2016-8278 is considered a high-risk vulnerability due to its potential to cause denial of service leading to device restart.
2
How do I fix CVE-2016-8278?
To mitigate CVE-2016-8278, update the Huawei USG devices to V300R001C01SPCa00 or later.
3
Which devices are affected by CVE-2016-8278?
CVE-2016-8278 affects Huawei USG9520, USG9560, and USG9580 unified security gateways with software versions prior to V300R001C01SPCa00.
4
What type of attack is associated with CVE-2016-8278?
CVE-2016-8278 is associated with remote denial of service attacks that can cause the device to restart.
5
When was CVE-2016-8278 disclosed?
CVE-2016-8278 was disclosed on September 21, 2016.