There is a SRTP icon display vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to intercept the packets in non-secure transmission mode. Successful exploitation may intercept and tamper with the call information, eventually cause sensitive information leak.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-19672 There is a SRTP icon display vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to intercept the packets in non-secure transmission mode. Successful exploitation may intercept and tamper with the call information, eventually cause sensitive information leak.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-05T06:37:59.756Z

Reserved: 2018-03-09T00:00:00

Link: CVE-2018-7960

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-11-27T22:29:00.400

Modified: 2024-11-21T04:13:01.437

Link: CVE-2018-7960

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.