
CVE-2014-4705
https://notcve.org/view.php?id=CVE-2014-4705
30 Jan 2018 — Multiple heap-based buffer overflows in the eSap software platform in Huawei Campus S9300, S7700, S9700, S5300, S5700, S6300, and S6700 series switches; AR150, AR160, AR200, AR1200, AR2200, AR3200, AR530, NetEngine16EX, SRG1300, SRG2300, and SRG3300 series routers; and WLAN AC6005, AC6605, and ACU2 access controllers allow remote attackers to cause a denial of service (device restart) via a crafted length field in a packet. Múltiples desbordamientos de búfer basados en memoria dinámica (heap) en la platafor... • http://secunia.com/advisories/59349 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-2700
https://notcve.org/view.php?id=CVE-2017-2700
22 Nov 2017 — AC6005 with software V200R006C10, AC6605 with software V200R006C10 have a DoS Vulnerability. An attacker can send malformed packets to the device, which causes the device memory leaks, leading to DoS attacks. AC6005 con software V200R006C10 y AC6605 con software V200R006C10 tienen una vulnerabilidad de denegación de servicio (DoS). Un atacante puede enviar paquetes mal formados al dispositivo, lo que provoca que el dispositivo filtre memoria. Esto conduce a ataques DoS. • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170517-01-ac-en • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-8147
https://notcve.org/view.php?id=CVE-2017-8147
22 Nov 2017 — AC6005 V200R006C10SPC200,AC6605 V200R006C10SPC200,AR1200 with software V200R005C10CP0582T, V200R005C10HP0581T, V200R005C20SPC026T,AR200 with software V200R005C20SPC026T,AR3200 V200R005C20SPC026T,CloudEngine 12800 with software V100R003C00, V100R005C00, V100R005C10, V100R006C00, V200R001C00,CloudEngine 5800 with software V100R003C00, V100R005C00, V100R005C10, V100R006C00, V200R001C00,CloudEngine 6800 with software V100R003C00, V100R005C00, V100R005C10, V100R006C00, V200R001C00,CloudEngine 7800 with software ... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170720-01-ospf-en • CWE-20: Improper Input Validation •

CVE-2015-6586
https://notcve.org/view.php?id=CVE-2015-6586
23 May 2017 — The mDNS module in Huawei WLAN AC6005, AC6605, and ACU2 devices with software before V200R006C00SPC100 allows remote attackers to obtain sensitive information by leveraging failure to restrict processing of mDNS unicast queries to the link local network. El módulo mDNS en los dispositivos Huawei WLAN AC6005, AC6605 y ACU2 con software anterior al V200R006C00SPC100, permite a atacantes remotos obtener información sensible aprovechando el fallo para restringir el procesamiento de consultas mDNS unicast a la r... • http://www.securityfocus.com/bid/76684 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2014-8572
https://notcve.org/view.php?id=CVE-2014-8572
02 Apr 2017 — Huawei AC6605 with software V200R001C00; AC6605 with software V200R002C00; ACU with software V200R001C00; ACU with software V200R002C00; S2300, S3300, S2700, S3700 with software V100R006C05 and earlier versions; S5300, S5700, S6300, S6700 with software V100R006, V200R001, V200R002, V200R003, V200R005C00SPC300 and earlier versions; S7700, S9300, S9300E, S9700 with software V100R006, V200R001, V200R002, V200R003, V200R005C00SPC300 and earlier versions could allow remote attackers to send a special SSH packet ... • http://www.huawei.com/en/psirt/security-advisories/hw-373182 • CWE-20: Improper Input Validation •

CVE-2016-6824
https://notcve.org/view.php?id=CVE-2016-6824
22 Sep 2016 — Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial of service (device restart) via crafted CAPWAP packets. Controladores de acceso Huawei AC6003, AC6005, AC6605 y ACU2 con software en versiones anteriores a V200R006C10SPC200 permite a usuarios remotos autenticados provocar una denegación de servicio (reinicio de dispositivo) a través de paquetes CAPWAP manipulados. • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160817-01-ac-en • CWE-20: Improper Input Validation •