CVE-2014-4707
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
02/04/2017
Last modified:
20/04/2025
Description
Huawei Campus S7700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9300 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300 allow unauthorized users to upgrade the bootrom or bootload software, bypass a Menu protection mechanism, conduct a Menu compromise attack, or bypass a Menu/upgrade protection mechanism.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:huawei:campus_s7700_firmware:v200r001c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s7700_firmware:v200r002c00spc100:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s7700_firmware:v200r003c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:campus_s7700:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s9300_firmware:v200r001c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s9300_firmware:v200r002c00spc100:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s9300_firmware:v200r003c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:campus_s9300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s9700_firmware:v200r001c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s9700_firmware:v200r002c00spc100:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:campus_s9700_firmware:v200r003c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:campus_s9700:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



