CVE-2015-8335

Description

Huawei VCN500 with software before V100R002C00SPC201 logs passwords in cleartext, which allows remote authenticated users to obtain sensitive information by triggering log generation and then reading the log.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.104

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2015-8331 ,CVE-2015-8333 ,CVE-2015-8335 are affected in vcn500 v100r002c00spc200b010NCM
Vulnerabilities CVE-2015-8335 are affected in vcn500 v100r002c00spc200NCM
Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8335)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234