Unknown
CVE-2017-17303
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Huawei DP300 V500R002C00; V500R002C00B010; V500R002C00B011; V500R002C00B012; V500R002C00B013; V500R002C00B014; V500R002C00B017; V500R002C00B018; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC400; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; RP200 V500R002C00SPC200; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE30 V100R001C10SPC300; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700B010; V500R002C00SPC200; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE40 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE50 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; V600R006C00SPC300; TE60 V100R001C10; V100R001C10B001; V100R001C10B002; V100R001C10B010; V100R001C10B011; V100R001C10B012; V100R001C10B013; V100R001C10B014; V100R001C10B016; V100R001C10B017; V100R001C10B018; V100R001C10B019; V100R001C10SPC400; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700; V100R001C10SPC800B011; V100R001C10SPC900; V500R002C00; V500R002C00B010; V500R002C00B011; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; V500R002C00SPCb00; V500R002C00SPCd00; V500R002C00SPCe00; V600R006C00; V600R006C00SPC100; V600R006C00SPC200; V600R006C00SPC300 use the CIDAM protocol, which contains sensitive information in the message when it is implemented. So these products has an information disclosure vulnerability. An authenticated remote attacker could track and get the message of a target system. Successful exploit could allow the attacker to get the information and cause the sensitive information disclosure.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- dp300 firmware v500r002c00,
- dp300 firmware v500r002c00b010,
- dp300 firmware v500r002c00b011,
- dp300 firmware v500r002c00b012,
- dp300 firmware v500r002c00b013,
- dp300 firmware v500r002c00b014,
- dp300 firmware v500r002c00b017,
- dp300 firmware v500r002c00b018,
- dp300 firmware v500r002c00spc100,
- dp300 firmware v500r002c00spc200,
- dp300 firmware v500r002c00spc300,
- dp300 firmware v500r002c00spc400,
- dp300 firmware v500r002c00spc500,
- dp300 firmware v500r002c00spc600,
- dp300 firmware v500r002c00spc800,
- dp300 firmware v500r002c00spc900,
- dp300 firmware v500r002c00spca00,
- rp200 firmware v500r002c00spc200,
- rp200 firmware v600r006c00,
- rp200 firmware v600r006c00spc200,
- rp200 firmware v600r006c00spc300,
- te30 firmware v100r001c10spc300,
- te30 firmware v100r001c10spc500,
- te30 firmware v100r001c10spc600,
- te30 firmware v100r001c10spc700b010,
- te30 firmware v500r002c00spc200,
- te30 firmware v500r002c00spc500,
- te30 firmware v500r002c00spc600,
- te30 firmware v500r002c00spc700,
- te30 firmware v500r002c00spc900,
- te30 firmware v500r002c00spcb00,
- te30 firmware v600r006c00,
- te30 firmware v600r006c00spc200,
- te30 firmware v600r006c00spc300,
- te40 firmware v500r002c00spc600,
- te40 firmware v500r002c00spc700,
- te40 firmware v500r002c00spc900,
- te40 firmware v500r002c00spcb00,
- te40 firmware v600r006c00,
- te40 firmware v600r006c00spc200,
- te40 firmware v600r006c00spc300,
- te50 firmware v500r002c00spc600,
- te50 firmware v500r002c00spc700,
- te50 firmware v500r002c00spcb00,
- te50 firmware v600r006c00,
- te50 firmware v600r006c00spc200,
- te50 firmware v600r006c00spc300,
- te60 firmware v100r001c10,
- te60 firmware v100r001c10b001,
- te60 firmware v100r001c10b002,
- te60 firmware v100r001c10b010,
- te60 firmware v100r001c10b011,
- te60 firmware v100r001c10b012,
- te60 firmware v100r001c10b013,
- te60 firmware v100r001c10b014,
- te60 firmware v100r001c10b016,
- te60 firmware v100r001c10b017,
- te60 firmware v100r001c10b018,
- te60 firmware v100r001c10b019,
- te60 firmware v100r001c10spc400,
- te60 firmware v100r001c10spc500,
- te60 firmware v100r001c10spc600,
- te60 firmware v100r001c10spc700,
- te60 firmware v100r001c10spc800b011,
- te60 firmware v100r001c10spc900,
- te60 firmware v500r002c00,
- te60 firmware v500r002c00b010,
- te60 firmware v500r002c00b011,
- te60 firmware v500r002c00spc100,
- te60 firmware v500r002c00spc200,
- te60 firmware v500r002c00spc300,
- te60 firmware v500r002c00spc600,
- te60 firmware v500r002c00spc700,
- te60 firmware v500r002c00spc800,
- te60 firmware v500r002c00spc900,
- te60 firmware v500r002c00spca00,
- te60 firmware v500r002c00spcb00,
- te60 firmware v500r002c00spcd00,
- te60 firmware v500r002c00spce00,
- te60 firmware v600r006c00,
- te60 firmware v600r006c00spc100,
- te60 firmware v600r006c00spc200,
- te60 firmware v600r006c00spc300
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: