CVE-2016-6839

MEDIUM

Huawei FusionAccess <V100R006C00 - CRLF Injection

Title source: llm

Description

CRLF injection vulnerability in Huawei FusionAccess before V100R006C00 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

Scores

CVSS v3 6.1
EPSS 0.0011
EPSS Percentile 29.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Classification

CWE
CWE-113
Status published

Affected Products (4)

huawei/fusionaccess
huawei/fusionaccess
huawei/fusionaccess
n/a/n/a

Timeline

Published Sep 07, 2016
Tracked Since Feb 18, 2026