Huawei S5300 Campus Series switches with software before V200R005SPH008 do not mask the password when uploading files, which allows physically proximate attackers to obtain sensitive password information by reading the display.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160112-01-switch-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2016-01-15 11:59
Updated : 2016-01-21 09:29
NVD link : CVE-2015-8675
Mitre link : CVE-2015-8675
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
huawei
- s5300
- s5300_firmware