CVE-2016-8789: XSS
Huawei eSpace Integrated Access Device (IAD) with software V300R001C03, V300R001C04, V300R001C06, V300R001C20, and V300R001C07 allows an attacker to trick a user into clicking a URL containing malicious scripts to obtain user information or hijack the session, aka XSS.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-8789?
CVE-2016-8789 is considered a medium severity vulnerability due to its potential for user information theft and session hijacking.
How do I fix CVE-2016-8789?
To fix CVE-2016-8789, update your Huawei eSpace Integrated Access Device firmware to the latest version provided by Huawei.
Which versions of Huawei eSpace Integrated Access Device are affected by CVE-2016-8789?
CVE-2016-8789 affects Huawei eSpace Integrated Access Device firmware versions V300R001C03, V300R001C04, V300R001C06, V300R001C20, and V300R001C07.
What type of vulnerability is CVE-2016-8789?
CVE-2016-8789 is classified as a cross-site scripting (XSS) vulnerability.
Can CVE-2016-8789 lead to data loss?
Yes, CVE-2016-8789 can lead to data loss by allowing attackers to obtain sensitive user information.