There is a command injection vulnerability in the HG8045Q product. When the command-line interface is enabled, which is disabled by default, attackers with administrator privilege could execute part of commands.
2021-08-13T16:15:07.647
2024-11-21T06:14:31.267
Modified
CVSSv3.1: 6.7 (MEDIUM)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | huawei | hg8045q_firmware | v300r016c00spc110 | Yes |
| Operating System | huawei | hg8045q_firmware | v300r018c10 | Yes |
| Hardware | huawei | hg8045q | - | No |