CVE-2017-15321
low
CVSS v3
3.7
CVSS v2
4.3
VIR risk
3.7
Description
Huawei FusionSphere OpenStack V100R006C000SPC102 (NFV) has an information leak vulnerability due to the use of a low version transmission protocol by default. An attacker could intercept packets transferred by a target device. Successful exploit could cause an information leak.
Predictions
Exploit likelihood
47%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: psirt@huawei.com — http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171108-01-fusionsphere-en
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| huawei | fusionsphere_openstack | v100r006c000spc102_\(nfv\) | |
References
CWEs
CWE-200
Verify integrity in audit chain (admin only). AS-IS.