6.3
CVSSv2

CVE-2017-17131

Published: 05/03/2018 Updated: 03/10/2019
CVSS v2 Base Score: 6.3 | Impact Score: 6.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.7 | Impact Score: 3.6 | Exploitability Score: 2.1
VMScore: 561
Vector: AV:N/AC:M/Au:S/C:N/I:N/A:C

Vulnerability Summary

Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V600R006C00; TE50 V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00; VP9660 V500R002C10 have an DoS vulnerability due to insufficient validation of the parameter when a putty comment key is loaded. An authenticated remote attacker can place a malformed putty key file in system when a system manager load the key an infinite loop happens which lead to reboot the system.

Vulnerable Product Search on Vulmon Subscribe to Product

huawei dp300_firmware v500r002c00

huawei rp200_firmware v500r002c00

huawei rp200_firmware v600r006c00

huawei te30_firmware v100r001c10

huawei te30_firmware v600r006c00

huawei te50_firmware v600r006c00

huawei te60_firmware v500r002c00

huawei te60_firmware v100r001c10

huawei te60_firmware v600r006c00

huawei vp9660_firmware v500r002c10