The Huawei Mobile Broadband HL Service 22.001.25.00.03 and earlier uses a weak ACL for the MobileBrServ program data directory, which allows local users to gain SYSTEM privileges by modifying VERSION.dll.
References
Configurations
Information
Published : 2016-05-23 12:59
Updated : 2016-05-25 09:03
NVD link : CVE-2016-2855
Mitre link : CVE-2016-2855
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
huawei
- mobile_broadband_hl_service