CVE-2015-8085
Severity CVSS v4.0:
Pending analysis
Type:
CWE-326
Inadequate Encryption Strength
Publication date:
03/10/2016
Last modified:
12/04/2025
Description
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 make it easier for remote authenticated administrators to obtain and decrypt passwords by leveraging selection of a reversible encryption algorithm.
Impact
Base Score 3.x
4.90
Severity 3.x
MEDIUM
Base Score 2.0
4.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:huawei:s9300_firmware:v200r005c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s9300_firmware:v200r006c00spc500:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:s9300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s12700_firmware:v200r005c00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s12700_firmware:v200r006c00:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:s12700:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:quidway_s9300_firmware:v200r001c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:quidway_s9300_firmware:v200r002c00spc100:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:quidway_s9300_firmware:v200r003c00spc500:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:quidway_s9300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:ar_firmware:v200r001:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:ar_firmware:v200r002:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:ar_firmware:v200r003:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:ar_firmware:v200r005c10:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:ar_firmware:v200r005c20:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



