CVE-2012-5968
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
19/12/2012
Last modified:
11/04/2025
Description
The Huawei E585 device does not validate the status of admin sessions, which allows remote attackers to obtain sensitive user information and the session ID, and modify data, by leveraging access to the LAN network.
Impact
Base Score 2.0
4.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:h:huawei:e585:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:e585u-82:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



