Metrics
No CVSS v4.0
No CVSS v3.1
Attack Vector Local
Attack Complexity Low
Privileges Required Low
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact Low
User Interaction None
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Partial
This CVE is not in the KEV list.
The EPSS score is 0.00023.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Huawei
Subscribe
|
Ar120-s
Subscribe
Ar120-s Firmware
Subscribe
Ar1200
Subscribe
Ar1200-s
Subscribe
Ar1200-s Firmware
Subscribe
Ar1200 Firmware
Subscribe
Ar150
Subscribe
Ar150-s
Subscribe
Ar150-s Firmware
Subscribe
Ar150 Firmware
Subscribe
Ar160
Subscribe
Ar160 Firmware
Subscribe
Ar200
Subscribe
Ar200-s
Subscribe
Ar200-s Firmware
Subscribe
Ar200 Firmware
Subscribe
Ar2200
Subscribe
Ar2200-s
Subscribe
Ar2200-s Firmware
Subscribe
Ar2200 Firmware
Subscribe
Ar3200
Subscribe
Ar3200 Firmware
Subscribe
Ar3600
Subscribe
Ar3600 Firmware
Subscribe
Ar510
Subscribe
Ar510 Firmware
Subscribe
Dp300
Subscribe
Dp300 Firmware
Subscribe
Max Presence
Subscribe
Max Presence Firmware
Subscribe
Netengine16ex
Subscribe
Netengine16ex Firmware
Subscribe
Rp200
Subscribe
Rp200 Firmware
Subscribe
Srg1300
Subscribe
Srg1300 Firmware
Subscribe
Srg2300
Subscribe
Srg2300 Firmware
Subscribe
Srg3300
Subscribe
Srg3300 Firmware
Subscribe
Te30
Subscribe
Te30 Firmware
Subscribe
Te40
Subscribe
Te40 Firmware
Subscribe
Te50
Subscribe
Te50 Firmware
Subscribe
Te60
Subscribe
Te60 Firmware
Subscribe
Tp3106
Subscribe
Tp3106 Firmware
Subscribe
Tp3206
Subscribe
Tp3206 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-8460 | Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR1200-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR150 V200R006C10, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR150-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR160 V200R006C10, V200R006C12, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR200 V200R006C10, V200R007C00, V200R007C01, V200R008C20, V200R008C30, AR200-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR2200 V200R006C10, V200R006C13, V200R006C16, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR2200-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR3200 V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008C30, AR3600 V200R006C10, V200R007C00, V200R007C01, V200R008C20, AR510 V200R006C10, V200R006C12, V200R006C13, V200R006C15, V200R006C16, V200R006C17, V200R007C00, V200R008C20, V200R008C30, DP300 V500R002C00, MAX PRESENCE V100R001C00, NetEngine16EX V200R006C10, V200R007C00, V200R008C20, V200R008C30, RP200 V500R002C00, V600R006C00, SRG1300 V200R006C10, V200R007C00, V200R007C02, V200R008C20, V200R008C30, SRG2300 V200R006C10, V200R007C00, V200R007C02, V200R008C20, V200R008C30, SRG3300 V200R006C10, V200R007C00, V200R008C20, V200R008C30, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002C00, V600R006C00, TP3106 V100R002C00, TP3206 V100R002C00, V100R002C10 have a null pointer dereference vulnerability. Due to insufficient input validation, an authenticated, local attacker may craft a specific XML file to the affected products to cause null pointer dereference. Successful exploit will cause some service abnormal. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-08-05T20:51:30.520Z
Reserved: 2017-12-04T00:00:00
Link: CVE-2017-17294
No data.
Status : Modified
Published: 2018-02-15T16:29:03.250
Modified: 2024-11-21T03:17:46.290
Link: CVE-2017-17294
No data.
OpenCVE Enrichment
No data.
EUVD