ZeroHour

CVE-2016-6670

CVSS 3.0
5.3 medium
EPSS
<1%p55
Published
()
Modified
Description

Huawei S7700, S9300, S9700, and S12700 devices with software before V200R008C00SPC500 use random numbers with insufficient entropy to generate self-signed certificates, which makes it easier for remote attackers to discover private keys by leveraging knowledge of a certificate.

Vendors
huawei firmwarehuawei
Products
s12700, s9700 firmware, s7700 firmware, s9300 firmware
Weakness
CWE-200
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.