Huawei

Fusioncompute

20 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Published 27.12.2024 10:15:15
  • Last modified 14.01.2025 18:35:32

There is an improper interface design vulnerability in Huawei product. A module interface of the impated product does not deal with some operations properly. Attackers can exploit this vulnerability to perform malicious operatation to compromise modu...

  • EPSS 0.01%
  • Published 27.12.2024 10:15:15
  • Last modified 15.01.2025 14:50:26

There is a privilege escalation vulnerability in Huawei FusionCompute product. Due to insufficient verification on specific files that need to be deserialized, local attackers can exploit this vulnerability to elevate permissions. (Vulnerability ID: ...

  • EPSS 0.74%
  • Published 23.11.2021 16:15:09
  • Last modified 21.11.2024 06:14:39

There is a command injection vulnerability in CMA service module of FusionCompute product when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not suffi...

  • EPSS 0.03%
  • Published 23.11.2021 15:15:07
  • Last modified 21.11.2024 06:14:32

There is an information leakage vulnerability in FusionCompute 6.5.1, eCNS280_TD V100R005C00 and V100R005C10. Due to the improperly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the de...

  • EPSS 0.48%
  • Published 28.09.2021 15:15:07
  • Last modified 21.11.2024 06:14:39

There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file. The software constructs part of a command using external special input from users, but the s...

  • EPSS 0.18%
  • Published 28.09.2021 15:15:07
  • Last modified 21.11.2024 06:14:39

There is an improper file upload control vulnerability in FusionCompute 6.5.0, 6.5.1 and 8.0.0. Due to the improper verification of file to be uploaded and does not strictly restrict the file access path, attackers may upload malicious files to the d...

  • EPSS 0.17%
  • Published 27.05.2021 13:15:07
  • Last modified 21.11.2024 05:49:58

There is an insufficient input validation vulnerability in FusionCompute 8.0.0. Due to the input validation is insufficient, an attacker can exploit this vulnerability to upload any files to the device. Successful exploit may cause the service abnorm...

  • EPSS 0.02%
  • Published 01.12.2020 01:15:11
  • Last modified 21.11.2024 05:40:04

FusionCompute versions 6.3.0, 6.3.1, 6.5.0, 6.5.1 and 8.0.0 have a privilege escalation vulnerability. Due to improper privilege management, an attacker with common privilege may access some specific files and get the administrator privilege in the a...

  • EPSS 1.51%
  • Published 01.12.2020 00:15:11
  • Last modified 21.11.2024 05:40:04

Huawei FusionCompute versions 6.5.1 and 8.0.0 have a command injection vulnerability. An authenticated, remote attacker can craft specific request to exploit this vulnerability. Due to insufficient verification, this could be exploited to cause the a...

  • EPSS 0.01%
  • Published 12.11.2020 14:15:23
  • Last modified 21.11.2024 05:40:06

FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can exploit this vulnerability to cause information leak.