CVE-2017-8157: Medium severity huawei oceanstor 5800 v3 firmware vulnerability
OceanStor 5800 V3 with software V300R002C00 and V300R002C10, OceanStor 6900 V3 V300R001C00 has an information leakage vulnerability. Products use TLS1.0 to encrypt. Attackers can exploit TLS1.0's vulnerabilities to decrypt data to obtain sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8157?
CVE-2017-8157 has a medium severity rating due to the potential for information leakage.
How do I fix CVE-2017-8157?
To mitigate CVE-2017-8157, upgrade the affected OceanStor firmware to a version that uses TLS1.1 or higher.
What products are affected by CVE-2017-8157?
CVE-2017-8157 affects Huawei OceanStor 5800 V3 with V300R002C00 and V300R002C10 and OceanStor 6900 V3 with V300R001C00.
What type of vulnerability is CVE-2017-8157?
CVE-2017-8157 is an information leakage vulnerability that can be exploited due to the use of outdated TLS1.0 for encryption.
Can CVE-2017-8157 be exploited remotely?
Yes, CVE-2017-8157 can be exploited remotely if the attacker has access to the network communication using TLS1.0.