CVE-2012-5968

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
19/12/2012
Last modified:
11/04/2025

Description

The Huawei E585 device does not validate the status of admin sessions, which allows remote attackers to obtain sensitive user information and the session ID, and modify data, by leveraging access to the LAN network.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:huawei:e585:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:e585u-82:-:*:*:*:*:*:*:*