CVE-2017-8197: Command Injection
FusionSphere V100R006C00SPC102(NFV) has a command injection vulnerability. An authenticated, remote attacker could craft packets with malicious strings and send them to a target device. Successful exploit could allow the attacker to launch a command injection attack and execute system commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8197?
CVE-2017-8197 is classified as a critical vulnerability due to its potential for remote command execution.
How do I fix CVE-2017-8197?
To address CVE-2017-8197, update to the latest version of Huawei FusionSphere that contains the security patch.
Who is affected by CVE-2017-8197?
CVE-2017-8197 affects users of Huawei FusionSphere V100R006C00SPC102(NFV) specifically.
What type of attack does CVE-2017-8197 enable?
CVE-2017-8197 allows authenticated remote attackers to execute arbitrary system commands via command injection.
Can CVE-2017-8197 be exploited without authentication?
No, exploitation of CVE-2017-8197 requires authentication to the affected device.