9.8
CVSSv3

CVE-2016-4576

Published: 23/05/2016 Updated: 28/11/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300, NIP6600, Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS8000 devices with software before V500R001C20SPC100 allows remote malicious users to cause a denial of service or execute arbitrary code via a crafted packet, related to "illegitimate parameters."

Vulnerable Product Search on Vulmon Subscribe to Product

huawei nip6300_firmware v500r001c00

huawei secospace_usg6500_firmware v500r001c00

huawei secospace_antiddos8000_firmware v500r001c00

huawei usg9500_firmware v500r001c00

huawei secospace_usg6300_firmware v500r001c00

huawei ngfw_module_firmware v500r001c00

huawei secospace_usg6600_firmware v500r001c00

huawei nip6600_firmware v500r001c00

huawei ips_module_firmware v500r001c00