First published: Tue Nov 27 2018(Updated: )
There is a SRTP icon display vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to intercept the packets in non-secure transmission mode. Successful exploitation may intercept and tamper with the call information, eventually cause sensitive information leak.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Espace 7950 Firmware | =v200r003c30 | |
Huawei eSpace 7950 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7960 is a SRTP icon display vulnerability in Huawei eSpace product.
An unauthenticated remote attacker launches a man-in-the-middle attack to intercept the packets in non-secure transmission mode.
CVE-2018-7960 has a severity score of 7.4 (high).
CVE-2018-7960 affects Huawei eSpace 7950 Firmware version v200r003c30.
No, Huawei eSpace 7950 is not vulnerable to CVE-2018-7960.