
CVE-2014-3224
https://notcve.org/view.php?id=CVE-2014-3224
02 Apr 2017 — Huawei Quidway S9700 V200R003C00SPC500, Quidway S9300 V200R003C00SPC500, Quidway S7700 V200R003C00SPC500, Quidway S6700 V200R003C00SPC300, Quidway S6300 V200R003C00SPC300, Quidway S5700 V200R003C00SPC300, Quidway S5300 V200R003C00SPC300 enable attackers to launch DoS attacks by crafting and sending malformed packets to these vulnerable products. Huawei Quidway S9700 V200R003C00SPC500, Quidway S9300 V200R003C00SPC500, Quidway S7700 V200R003C00SPC500, Quidway S6700 V200R003C00SPC300, Quidway S6300 V200R003C00... • http://www.huawei.com/en/psirt/security-advisories/hw-333184 • CWE-399: Resource Management Errors •

CVE-2015-8085
https://notcve.org/view.php?id=CVE-2015-8085
03 Oct 2016 — Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 make it easier for remote authenticated administrators to obtain and decrypt passwords by leveraging selection of a reversible encryption algorithm. Routers Huawei AR con software en versiones anteriores a V200R0... • http://www.huawei.com/en/psirt/security-advisories/hw-455876 • CWE-326: Inadequate Encryption Strength •

CVE-2015-8086
https://notcve.org/view.php?id=CVE-2015-8086
03 Oct 2016 — Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 makes it easier for remote authenticated administrators to obtain encryption keys and ciphertext passwords via vectors related to key storage. Routers Huawei AR con software en versiones anteriores a V200R007C00S... • http://www.huawei.com/en/psirt/security-advisories/hw-455876 • CWE-326: Inadequate Encryption Strength •

CVE-2015-2808 – SSL/TLS: "Invariance Weakness" vulnerability in RC4 stream cipher
https://notcve.org/view.php?id=CVE-2015-2808
01 Apr 2015 — The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing network traffic that occasionally relies on keys affected by the Invariance Weakness, and then using a brute-force approach involving LSB values, aka the "Bar Mitzvah" issue. El algoritmo RC4, utilizado en el protocolo TLS y el prot... • http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04779034 • CWE-327: Use of a Broken or Risky Cryptographic Algorithm •

CVE-2015-1460
https://notcve.org/view.php?id=CVE-2015-1460
03 Feb 2015 — Huawei Quidway switches with firmware before V200R005C00SPC300 allows remote attackers to gain privileges via a crafted packet. Los switches Huawei Quidway con firmware anterior a V200R005C00SPC300 permiten a atacantes remotos ganar privilegios a través de un paquete manipulado. • http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-411975.htm • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2013-4628
https://notcve.org/view.php?id=CVE-2013-4628
20 Jun 2013 — The firewall module on the Huawei Quidway Service Process Unit (SPU) board S7700, S9300, and S9700 on Huawei Campus Switch devices allows remote authenticated users to obtain sensitive information from the high-priority security zone by leveraging access to the low-priority security zone. El módulo del firewall en el Huawe Quidway Service Process Unit (SPU) board S770, S9300, S9700 en dispositivos Huawei Campus Switch permite a usuarios autenticados de forma remota obtener información sensible de zonas de a... • http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-261458.htm • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •