Description
Huawei FusionServer rack servers RH2288 V3 with software before V100R003C00SPC603, RH2288H V3 with software before V100R003C00SPC503, XH628 V3 with software before V100R003C00SPC602, RH1288 V3 with software before V100R003C00SPC602, RH2288A V2 with software before V100R002C00SPC701, RH1288A V2 with software before V100R002C00SPC502, RH8100 V3 with software before V100R003C00SPC110, CH222 V3 with software before V100R001C00SPC161, CH220 V3 with software before V100R001C00SPC161, and CH121 V3 with software before V100R001C00SPC161 allow remote authenticated operators to change server information by leveraging failure to verify user permissions.
Published: 2017-10-09
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2015-7740 Huawei FusionServer rack servers RH2288 V3 with software before V100R003C00SPC603, RH2288H V3 with software before V100R003C00SPC503, XH628 V3 with software before V100R003C00SPC602, RH1288 V3 with software before V100R003C00SPC602, RH2288A V2 with software before V100R002C00SPC701, RH1288A V2 with software before V100R002C00SPC502, RH8100 V3 with software before V100R003C00SPC110, CH222 V3 with software before V100R001C00SPC161, CH220 V3 with software before V100R001C00SPC161, and CH121 V3 with software before V100R001C00SPC161 allow remote authenticated operators to change server information by leveraging failure to verify user permissions.
History

No history.

Subscriptions

Huawei Ch121 V3 Ch121 V3 Firmware Ch220 V3 Ch220 V3 Firmware Ch222 V3 Ch222 V3 Firmware Rh1288 V3 Rh1288 V3 Firmware Rh1288a V2 Rh1288a V2 Firmware Rh2288 V3 Rh2288 V3 Firmware Rh2288a V2 Rh2288a V2 Firmware Rh2288h V3 Rh2288h V3 Firmware Rh8100 V3 Rh8100 V3 Firmware Xh628 V3 Xh628 V3 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T07:58:59.938Z

Reserved: 2015-10-16T00:00:00.000Z

Link: CVE-2015-7842

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-10-10T01:30:20.500

Modified: 2025-04-20T01:37:25.860

Link: CVE-2015-7842

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses