Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-8769

Опубликовано: 02 апр. 2017
Источник: nvd
CVSS3: 6.7
CVSS2: 7.2
EPSS Низкий

Описание

Huawei UTPS earlier than UTPS-V200R003B015D16SPC00C983 has an unquoted service path vulnerability which can lead to the truncation of UTPS service query paths. An attacker may put an executable file in the search path of the affected service and obtain elevated privileges after the executable file is executed.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:huawei:utps_firmware:*:*:*:*:*:*:*:*
Версия до v200r003b015d15sp00c983 (включая)

EPSS

Процентиль: 61%
0.0042
Низкий

6.7 Medium

CVSS3

7.2 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

CVSS3: 6.7
github
больше 3 лет назад

Huawei UTPS earlier than UTPS-V200R003B015D16SPC00C983 has an unquoted service path vulnerability which can lead to the truncation of UTPS service query paths. An attacker may put an executable file in the search path of the affected service and obtain elevated privileges after the executable file is executed.

EPSS

Процентиль: 61%
0.0042
Низкий

6.7 Medium

CVSS3

7.2 High

CVSS2

Дефекты

CWE-264