// For flags

CVE-2017-8174

 

Severity Score

7.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Huawei USG6300 V100R001C30SPC300 and USG6600 with software of V100R001C30SPC500,V100R001C30SPC600,V100R001C30SPC700,V100R001C30SPC800 have a weak algorithm vulnerability. Attackers may exploit the weak algorithm vulnerability to crack the cipher text and cause confidential information leaks on the transmission links.

Huawei USG6300 V100R001C30SPC300 y USG6600 con versiones de software V100R001C30SPC500, V100R001C30SPC600, V100R001C30SPC700 y ,V100R001C30SPC800 tiene una vulnerabilidad de algoritmo débil. Los atacantes podrían explotar esta vulnerabilidad de algoritmo débil para descifrar el texto cifrado y provocar fugas de información confidencial en los enlaces de transmisión.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-04-25 CVE Reserved
  • 2017-11-22 CVE Published
  • 2024-07-28 EPSS Updated
  • 2024-09-17 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-326: Inadequate Encryption Strength
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Huawei
Search vendor "Huawei"
Secospace Usg6300 Firmware
Search vendor "Huawei" for product "Secospace Usg6300 Firmware"
v100r001c30spc300
Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v100r001c30spc300"
-
Affected
in Huawei
Search vendor "Huawei"
Secospace Usg6300
Search vendor "Huawei" for product "Secospace Usg6300"
--
Safe
Huawei
Search vendor "Huawei"
Secospace Usg6600 Firmware
Search vendor "Huawei" for product "Secospace Usg6600 Firmware"
v100r001c30spc500
Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v100r001c30spc500"
-
Affected
in Huawei
Search vendor "Huawei"
Secospace Usg6600
Search vendor "Huawei" for product "Secospace Usg6600"
--
Safe
Huawei
Search vendor "Huawei"
Secospace Usg6600 Firmware
Search vendor "Huawei" for product "Secospace Usg6600 Firmware"
v100r001c30spc600
Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v100r001c30spc600"
-
Affected
in Huawei
Search vendor "Huawei"
Secospace Usg6600
Search vendor "Huawei" for product "Secospace Usg6600"
--
Safe
Huawei
Search vendor "Huawei"
Secospace Usg6600 Firmware
Search vendor "Huawei" for product "Secospace Usg6600 Firmware"
v100r001c30spc700
Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v100r001c30spc700"
-
Affected
in Huawei
Search vendor "Huawei"
Secospace Usg6600
Search vendor "Huawei" for product "Secospace Usg6600"
--
Safe
Huawei
Search vendor "Huawei"
Secospace Usg6600 Firmware
Search vendor "Huawei" for product "Secospace Usg6600 Firmware"
v100r001c30spc800
Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v100r001c30spc800"
-
Affected
in Huawei
Search vendor "Huawei"
Secospace Usg6600
Search vendor "Huawei" for product "Secospace Usg6600"
--
Safe