QID 43851

Date Published: 2021-09-15

QID 43851: Huawei Switch Improper Authorization Vulnerability (SA-20180328-01)

The system incorrectly performs an authorization check when a normal user attempts to access certain information which is supposed to be accessed only by authenticated user. Successful exploit could cause information disclosure. (Vulnerability ID: HWPSIRT-2017-09010)

Successful exploit could cause information disclosure.

  • CVSS V3 rated as Medium - 4.3 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20180328-01 for updates and patch information.

    CVEs related to QID 43851

    Software Advisories
    Advisory ID Software Component Link
    huawei-sa-20180328-01 Huawei VRP URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20180328-01-authentication-en