First published: Wed Nov 22 2017(Updated: )
The FusionSphere OpenStack V100R006C00SPC102(NFV) has an improper authentication vulnerability. Due to improper authentication on one port, an authenticated, remote attacker may exploit the vulnerability to execute more operations by send a crafted rest message.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei FusionSphere OpenStack | =v100r006c00spc102\(nfv\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-8195 is high, with a severity value of 8.8.
CVE-2017-8195 is an improper authentication vulnerability in FusionSphere OpenStack V100R006C00SPC102(NFV).
CVE-2017-8195 allows an authenticated remote attacker to execute more operations on Huawei FusionSphere OpenStack by sending a crafted REST message.
To fix CVE-2017-8195, upgrade to the latest version of FusionSphere OpenStack V100R006C00SPC102(NFV).
Additional information about CVE-2017-8195 can be found at http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170830-01-OpenStack-en.