// For flags

CVE-2017-17290

 

Severity Score

7.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Light Directory Access Protocol (LDAP) clients of Huawei TE60 with software V600R006C00, ViewPoint 9030 with software V100R011C02, V100R011C03 have a resource management errors vulnerability. An unauthenticated, remote attacker may make the LDAP server not respond to the client's request by controlling the LDAP server. Due to improper management of LDAP connection resource, a successful exploit may cause the connection resource exhausted of the LDAP client.

Los clientes Light Directory Access Protocol (LDAP) de Huawei TE60 con software V600R006C00 y ViewPoint 9030 con software V100R011C02, V100R011C03 tienen una vulnerabilidad de error de gestión de recursos. Un atacante remoto no autenticado podría hacer que el servidor LDAP no responda a las peticiones del cliente mediante la toma de control del servidor LDAP. Dada la gestión indebida del recurso de la conexión LDAP, una explotación con éxito podría provocar el agotamiento del recurso de conexión del cliente LDAP.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-12-04 CVE Reserved
  • 2018-02-15 CVE Published
  • 2023-12-26 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-400: Uncontrolled Resource Consumption
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Huawei
Search vendor "Huawei"
Te60 Firmware
Search vendor "Huawei" for product "Te60 Firmware"
v600r006c00
Search vendor "Huawei" for product "Te60 Firmware" and version "v600r006c00"
-
Affected
in Huawei
Search vendor "Huawei"
Te60
Search vendor "Huawei" for product "Te60"
--
Safe
Huawei
Search vendor "Huawei"
Viewpoint 9030 Firmware
Search vendor "Huawei" for product "Viewpoint 9030 Firmware"
v100r011c02
Search vendor "Huawei" for product "Viewpoint 9030 Firmware" and version "v100r011c02"
-
Affected
in Huawei
Search vendor "Huawei"
Viewpoint 9030
Search vendor "Huawei" for product "Viewpoint 9030"
--
Safe
Huawei
Search vendor "Huawei"
Viewpoint 9030 Firmware
Search vendor "Huawei" for product "Viewpoint 9030 Firmware"
v100r011c03
Search vendor "Huawei" for product "Viewpoint 9030 Firmware" and version "v100r011c03"
-
Affected
in Huawei
Search vendor "Huawei"
Viewpoint 9030
Search vendor "Huawei" for product "Viewpoint 9030"
--
Safe