FusionSphere OpenStack V100R006C00SPC102(NFV)has an improper verification of cryptographic signature vulnerability. The software does not verify the cryptographic signature. An attacker with high privilege may exploit this vulnerability to inject malicious software.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171018-01-fusionsphere-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-11-22 11:29
Updated : 2017-12-08 11:04
NVD link : CVE-2017-8190
Mitre link : CVE-2017-8190
JSON object : View
CWE
CWE-347
Improper Verification of Cryptographic Signature
Products Affected
huawei
- fusionsphere_openstack