CVE-2014-4707

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
02/04/2017
Last modified:
20/04/2025

Description

Huawei Campus S7700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9300 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300 allow unauthorized users to upgrade the bootrom or bootload software, bypass a Menu protection mechanism, conduct a Menu compromise attack, or bypass a Menu/upgrade protection mechanism.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:campus_s7700_firmware:v200r001c00spc300:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s7700_firmware:v200r002c00spc100:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s7700_firmware:v200r003c00spc300:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s7700:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s9300_firmware:v200r001c00spc300:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s9300_firmware:v200r002c00spc100:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s9300_firmware:v200r003c00spc300:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9300:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s9700_firmware:v200r001c00spc300:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s9700_firmware:v200r002c00spc100:*:*:*:*:*:*:*
cpe:2.3:o:huawei:campus_s9700_firmware:v200r003c00spc300:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9700:-:*:*:*:*:*:*:*