CVE-2016-3675

HIGH

Huawei Policy Center <V100R003C10SPC020 - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in Huawei Policy Center with software before V100R003C10SPC020 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors related to system databases.

References (1)

Core 1

Scores

CVSS v3 8.1
EPSS 0.0008
EPSS Percentile 24.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-89
Status published
Products (2)
huawei/policy_center_firmware v100r003c00
huawei/policy_center_firmware v100r003c10
Published Apr 11, 2016
Tracked Since Feb 18, 2026