CVE-2015-2254
- EPSS 0.28%
- Published 13.03.2019 16:29:00
- Last modified 21.11.2024 02:27:06
Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resulting in the deletion of directory files and compromise of system functions when loading a patch.
CVE-2015-2251
- EPSS 0.14%
- Published 08.06.2017 16:29:00
- Last modified 20.04.2025 01:37:25
The DeviceManager in Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to obtain sensitive information via a crafted UDS patch with JavaScript.
CVE-2015-2252
- EPSS 0.47%
- Published 08.06.2017 16:29:00
- Last modified 20.04.2025 01:37:25
Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to execute arbitrary code with root privileges via a crafted UDS patch with shell scripts.
- EPSS 0.08%
- Published 08.06.2017 16:29:00
- Last modified 20.04.2025 01:37:25
The XML interface in Huawei OceanStor UDS devices with software before V100R002C01SPC102 allows remote authenticated users to obtain sensitive information via a crafted XML document.