CVE-2017-8198: SQL Injection
FusionSphere V100R006C00SPC102(NFV) has an SQL injection vulnerability. An authenticated, remote attacker could craft interface messages carrying malicious SQL statements and send them to a target device. Successful exploit could allow the attacker to launch an SQL injection attack and execute SQL commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8198?
CVE-2017-8198 has a high severity due to its potential for SQL injection attacks that could compromise the affected systems.
How do I fix CVE-2017-8198?
To fix CVE-2017-8198, apply the security patches provided by Huawei for the affected FusionSphere V100R006C00SPC102(NFV) version.
Who is affected by CVE-2017-8198?
CVE-2017-8198 specifically affects devices running Huawei's FusionSphere V100R006C00SPC102(NFV) software.
What type of vulnerability is CVE-2017-8198?
CVE-2017-8198 is classified as an SQL injection vulnerability.
What could an attacker achieve by exploiting CVE-2017-8198?
An attacker could execute arbitrary SQL commands on the database, potentially gaining unauthorized access to sensitive information.