CVE-2016-8801

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
02/04/2017
Last modified:
20/04/2025

Description

Huawei OceanStor 5600 V3 with V300R003C00C10 and earlier versions allows attackers with administrator privilege to inject a command into a specific command's parameters, and run this injected command with root privilege.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:oceanstor_5600_v3_firmware:*:*:*:*:*:*:*:* v300r003c00c10 (including)
cpe:2.3:h:huawei:oceanstor_5600_v3:-:*:*:*:*:*:*:*