XML external entity (XXE) vulnerability in the Hyper Management Module (HMM) in Huawei E9000 rack servers with software before V100R001C00SPC296 allows remote authenticated users to read arbitrary files or cause a denial of service (web service outage) via a crafted XML document.
2016-09-07T19:28:19.363
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 6.6 (MEDIUM)
AV:N/AC:M/Au:S/C:P/I:N/A:P
6.8
4.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | huawei | e9000_chassis | ≤ v100r001c00 | Yes |