8.1

CVE-2023-52718

A connection hijacking vulnerability exists in some Huawei home routers. Successful exploitation of this vulnerability may cause DoS or information leakage.(Vulnerability ID:HWPSIRT-2023-34408)

This vulnerability has been assigned a (CVE)ID:CVE-2023-52718

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
HuaweiPt9030-15 Firmware Version3.0.3.266
   HuaweiPt9030-15 Version-
HuaweiWs7206-10 Firmware Version11.0.5.19
   HuaweiWs7206-10 Version-
HuaweiWs7206-10 Firmware Version2.1.0.203
   HuaweiWs7206-10 Version-
HuaweiWs7290-15 Firmware Version3.0.3.266
   HuaweiWs7290-15 Version-
HuaweiWs8000-10 Firmware Version3.0.3.236
   HuaweiWs8000-10 Version-
HuaweiWs8001-10 Firmware Version3.0.3.242
   HuaweiWs8001-10 Version-
HuaweiWs8002-10 Firmware Version3.0.3.242
   HuaweiWs8002-10 Version-
HuaweiWs8500-10 Firmware Version3.0.3.235
   HuaweiWs8500-10 Version-
HuaweiWs8502-10 Firmware Version3.0.3.242
   HuaweiWs8502-10 Version-
HuaweiWs8700-10 Firmware Version3.0.3.251
   HuaweiWs8700-10 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.115
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.1 2.8 5.2
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
psirt@huawei.com 6.4 0.5 5.9
CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-420 Unprotected Alternate Channel

The product protects a primary channel, but it does not use the same level of protection for an alternate channel.