CVE-2014-8570
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
02/04/2017
Last modified:
20/04/2025
Description
Huawei S9300, S9303, S9306, S9312 with software V100R002; S7700, S7703, S7706, S7712 with software V100R003, V100R006, V200R001, V200R002, V200R003, V200R005; S9300E, S9303E, S9306E, S9312E with software V200R001; S9700, S9703, S9706, S9712 with software V200R002, V200R003, V200R005; S12708, S12712 with software V200R005; 5700HI, 5300HI with software V100R006, V200R001, V200R002, V200R003, V200R005; 5710EI, 5310EI with software V200R002, V200R003, V200R005; 5710HI, 5310HI with software V200R003, V200R005; 6700EI, 6300EI with software V200R005 could cause a leak of IP addresses of devices, related to unintended interface support for VRP MPLS LSP Ping.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:huawei:s9300_firmware:v100r002:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v100r003:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v100r006:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v200r001:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v200r002:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v200r003:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v200r005:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:s9300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v100r002:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v100r003:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v100r006:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v200r001:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v200r002:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v200r003:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9303_firmware:v200r005:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



