Huawei EC156, EC176, and EC177 USB Modem products with software before UTPS-V200R003B015D02SP07C1014 (23.015.02.07.1014) and before V200R003B015D02SP08C1014 (23.015.02.08.1014) use a weak ACL for the "Mobile Partner" directory, which allows remote attackers to gain SYSTEM privileges by compromising a low privilege account and modifying Mobile Partner.exe.
Advisories
Source ID Title
EUVD EUVD EUVD-2014-8195 Huawei EC156, EC176, and EC177 USB Modem products with software before UTPS-V200R003B015D02SP07C1014 (23.015.02.07.1014) and before V200R003B015D02SP08C1014 (23.015.02.08.1014) use a weak ACL for the "Mobile Partner" directory, which allows remote attackers to gain SYSTEM privileges by compromising a low privilege account and modifying Mobile Partner.exe.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T13:18:47.299Z

Reserved: 2014-10-20T00:00:00

Link: CVE-2014-8358

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-12-11T21:29:00.237

Modified: 2025-04-20T01:37:25.860

Link: CVE-2014-8358

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses