7.5
CVE-2015-6586
- EPSS 0.14%
- Published 23.05.2017 04:29:00
- Last modified 20.04.2025 01:37:25
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The mDNS module in Huawei WLAN AC6005, AC6605, and ACU2 devices with software before V200R006C00SPC100 allows remote attackers to obtain sensitive information by leveraging failure to restrict processing of mDNS unicast queries to the link local network.
Data is provided by the National Vulnerability Database (NVD)
Huawei ≫ Wlan Acu2 Firmware Version <= v200r005c00
Huawei ≫ Wlan Acu2 Firmware Version <= v200r005c10
Huawei ≫ Wlan Acu2 Firmware Version <= v200r006c00
Huawei ≫ Wlan Ac6005 Firmware Version <= v200r005c00
Huawei ≫ Wlan Ac6005 Firmware Version <= v200r005c10
Huawei ≫ Wlan Ac6005 Firmware Version <= v200r006c00
Huawei ≫ Wlan Ac6605 Firmware Version <= v200r005c00
Huawei ≫ Wlan Ac6605 Firmware Version <= v200r005c10
Huawei ≫ Wlan Ac6605 Firmware Version <= v200r006c00
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.14% | 0.303 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.