Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vcg6-mhx4-79p7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

The Operation and Maintenance Unit (OMU) in Huawei VCN500 with software before V100R002C00SPC200 does not properly invalidate the session ID when an "abnormal exit" occurs, which allows remote attackers to conduct replay attacks via the session ID.

The Operation and Maintenance Unit (OMU) in Huawei VCN500 with software before V100R002C00SPC200 does not properly invalidate the session ID when an "abnormal exit" occurs, which allows remote attackers to conduct replay attacks via the session ID.

EPSS

Процентиль: 33%
0.00133
Низкий

7.4 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.4
nvd
около 10 лет назад

The Operation and Maintenance Unit (OMU) in Huawei VCN500 with software before V100R002C00SPC200 does not properly invalidate the session ID when an "abnormal exit" occurs, which allows remote attackers to conduct replay attacks via the session ID.

EPSS

Процентиль: 33%
0.00133
Низкий

7.4 High

CVSS3

Дефекты

CWE-20