The Huawei E585 device does not validate the status of admin sessions, which allows remote attackers to obtain sensitive user information and the session ID, and modify data, by leveraging access to the LAN network.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2012-12-19T11:00:00Z

Updated: 2024-09-17T01:35:39.801Z

Reserved: 2012-11-21T00:00:00Z

Link: CVE-2012-5968

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2012-12-19T11:55:59.750

Modified: 2013-01-29T05:00:00.000

Link: CVE-2012-5968

cve-icon Redhat

No data.