CVE-2015-8334

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
29/08/2017
Last modified:
20/04/2025

Description

SQL injection vulnerability in the Operation and Maintenance Unit (OMU) in Huawei VCN500 before V100R002C00SPC201 allows remote authenticated users to execute arbitrary SQL commands via a crafted HTTP request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:vcn500_firmware:v100r002c00spc200:*:*:*:*:*:*:*
cpe:2.3:o:huawei:vcn500_firmware:v100r002c00spc200b010:*:*:*:*:*:*:*
cpe:2.3:h:huawei:vcn500:-:*:*:*:*:*:*:*