Huawei SmartCare V200R003C10 has a CSV injection vulnerability. An remote authenticated attacker could inject malicious CSV expression to the affected device.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-notices/huawei-sn-20171201-01-smartcare-en | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2017-12-22 17:29
Updated : 2018-01-05 18:16
NVD link : CVE-2017-15313
Mitre link : CVE-2017-15313
CVE.ORG link : CVE-2017-15313
JSON object : View
Products Affected
huawei
- smartcare
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')