CVE-2017-8196

MEDIUM

FusionSphere V100R006C00SPC102(NFV) - Authenticated Incorrect Authorization

Title source: llm
STIX 2.1

Description

FusionSphere V100R006C00SPC102(NFV) has an incorrect authorization vulnerability. An authenticated attacker could execute commands that he/she should have had no permission to perform, thereby querying, modifying, and deleting certain service data and making the service unavailable.

References (1)

Core 1

Scores

CVSS v3 4.2
EPSS 0.0001
EPSS Percentile 2.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-863
Status published
Products (2)
huawei/fusionsphere v100r006c00spc102\(nfv\)
Huawei Technologies Co., Ltd./FusionSphere V100R006C00SPC102(NFV)
Published Nov 22, 2017
Tracked Since Feb 18, 2026