ID

VAR-201912-2001


TITLE

H3C ER6300G2 router has weak password vulnerability

Trust: 0.6

sources: CNVD: CNVD-2019-43875

DESCRIPTION

Hangzhou Huasan Communication Technology Co., Ltd. (referred to as Huasan Communication), mainly provides research, development, production, sales and services of IT infrastructure products and solutions. Huasan ER6300G2 router has a weak password vulnerability. Attackers can use this vulnerability to log in to the router's backend.

Trust: 0.6

sources: CNVD: CNVD-2019-43875

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2019-43875

AFFECTED PRODUCTS

vendor:xinhua sanmodel:er6300g2scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2019-43875

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2019-43875
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2019-43875
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2019-43875

PATCH

title:H3C ER6300G2 router has weak password vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/188851

Trust: 0.6

sources: CNVD: CNVD-2019-43875

EXTERNAL IDS

db:CNVDid:CNVD-2019-43875

Trust: 0.6

sources: CNVD: CNVD-2019-43875

SOURCES

db:CNVDid:CNVD-2019-43875

LAST UPDATE DATE

2022-05-04T09:16:09.309000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2019-43875date:2019-12-10T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2019-43875date:2019-12-19T00:00:00