CVE-2012-4960

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
20/06/2013
Last modified:
11/04/2025

Description

The Huawei NE5000E, MA5200G, NE40E, NE80E, ATN, NE40, NE80, NE20E-X6, NE20, ME60, CX600, CX200, CX300, ACU, WLAN AC 6605, S9300, S7700, S2300, S3300, S5300, S3300HI, S5300HI, S5306, S6300, S2700, S3700, S5700, S6700, AR G3, H3C AR(OEM IN), AR 19, AR 29, AR 49, Eudemon100E, Eudemon200, Eudemon300, Eudemon500, Eudemon1000, Eudemon1000E-U/USG5300, Eudemon1000E-X/USG5500, Eudemon8080E/USG9300, Eudemon8160E/USG9300, Eudemon8000E-X/USG9500, E200E-C/USG2200, E200E-X3/USG2200, E200E-X5/USG2200, E200E-X7/USG2200, E200E-C/USG5100, E200E-X3/USG5100, E200E-X5/USG5100, E200E-X7/USG5100, E200E-B/USG2100, E200E-X1/USG2100, E200E-X2/USG2100, SVN5300, SVN2000, SVN5000, SVN3000, NIP100, NIP200, NIP1000, NIP2100, NIP2200, and NIP5100 use the DES algorithm for stored passwords, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:huawei:acu:v100r003c01spc100:*:*:*:*:*:*:*
cpe:2.3:h:huawei:acu:v200r001c00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:acu:v200r001c00spc100:*:*:*:*:*:*:*
cpe:2.3:h:huawei:ar_19\/29\/49:*:*:*:*:*:*:*:* r2207 (including)
cpe:2.3:h:huawei:ar_g3:v200r001c00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:ar_g3:v200r001c01:*:*:*:*:*:*:*
cpe:2.3:h:huawei:ar_g3:v200r002c00spc200:*:*:*:*:*:*:*
cpe:2.3:h:huawei:atn:v200r001c00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:atn:v200r001c01:*:*:*:*:*:*:*
cpe:2.3:h:huawei:cx200:v100r005:*:*:*:*:*:*:*
cpe:2.3:h:huawei:cx300:v100r005:*:*:*:*:*:*:*
cpe:2.3:h:huawei:cx600:v200r002:*:*:*:*:*:*:*
cpe:2.3:h:huawei:cx600:v600r001:*:*:*:*:*:*:*
cpe:2.3:h:huawei:cx600:v600r002:*:*:*:*:*:*:*
cpe:2.3:h:huawei:cx600:v600r003:*:*:*:*:*:*:*