Vulnerabilities (CVE)

Filtered by vendor Huawei Subscribe
Filtered by product Hedex Lite
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-8138 1 Huawei 1 Hedex Lite 2017-12-08 6.8 MEDIUM 8.8 HIGH
HedEx Earlier than V200R006C00 versions has a cross-site request forgery (CSRF) vulnerability. An attacker could trick a user into accessing a website containing malicious scripts which may tamper with configurations and interrupt normal services.
CVE-2017-8137 1 Huawei 1 Hedex Lite 2017-12-07 9.3 HIGH 7.8 HIGH
HedEx Earlier than V200R006C00 versions has a dynamic link library (DLL) hijacking vulnerability due to calling the DDL file by accessing a relative path. An attacker could exploit this vulnerability to tamper with the DLL file, leading to DLL hijacking.