Huawei USG9500 with software V200R001C01SPC800 and earlier versions, V300R001C00; USG2100 with software V300R001C00SPC900 and earlier versions; USG2200 with software V300R001C00SPC900; USG5100 with software V300R001C00SPC900 could allow an unauthenticated, remote attacker to conduct a CSRF attack against the user of the web interface.
2017-04-02T20:59:00.470
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | huawei | fusionmanager | v100r002c03 | Yes |
Application | huawei | fusionmanager | v100r003c00 | Yes |
Operating System | huawei | usg9500_firmware | ≤ v200r001c01spc800 | Yes |
Operating System | huawei | usg9500_firmware | v300r001c00 | Yes |
Hardware | huawei | usg9500 | - | No |
Operating System | huawei | usg2100_firmware | ≤ v300r001c00spc900 | Yes |
Hardware | huawei | usg2100 | - | No |
Operating System | huawei | usg2200_firmware | ≤ v300r001c00spc900 | Yes |
Hardware | huawei | usg2200 | - | No |
Operating System | huawei | usg5100_firmware | ≤ v300r001c00spc900 | Yes |
Hardware | huawei | usg5100 | - | No |
Operating System | huawei | usg5500_firmware | ≤ v300r001c00spc900 | Yes |
Hardware | huawei | usg5500 | - | No |