CVE-2016-6159

HIGH

Huawei WS331a - Auth Bypass

Title source: llm

Description

The management interface of Huawei WS331a routers with software before WS331a-10 V100R001C01B112 allows remote attackers to bypass authentication and obtain administrative access by sending "special packages" to the LAN interface.

Scores

CVSS v3 7.5
EPSS 0.0080
EPSS Percentile 73.9%
Attack Vector ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-287
Status draft

Affected Products (1)

huawei/ws331a_router_firmware < ws331a-10_v100r001c02b017sp01

Timeline

Published Sep 21, 2016
Tracked Since Feb 18, 2026