ID

VAR-201912-2012


TITLE

H3C ER3260 router has weak password vulnerability

Trust: 0.6

sources: CNVD: CNVD-2019-43874

DESCRIPTION

Hangzhou Huasan Communication Technology Co., Ltd. (referred to as Huasan Communication), mainly provides research, development, production, sales and services of IT infrastructure products and solutions. Huasan ER3260 router has a weak password vulnerability. Attackers can use this vulnerability to log in to the router's backend.

Trust: 0.6

sources: CNVD: CNVD-2019-43874

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2019-43874

AFFECTED PRODUCTS

vendor:xinhua sanmodel:er3260scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2019-43874

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2019-43874
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2019-43874
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2019-43874

PATCH

title:H3C ER3260 router has weak password vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/188849

Trust: 0.6

sources: CNVD: CNVD-2019-43874

EXTERNAL IDS

db:CNVDid:CNVD-2019-43874

Trust: 0.6

sources: CNVD: CNVD-2019-43874

SOURCES

db:CNVDid:CNVD-2019-43874

LAST UPDATE DATE

2022-05-04T09:55:52.364000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2019-43874date:2019-12-10T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2019-43874date:2019-12-19T00:00:00