CVE-2015-8265
Last modified
CVE-2015-8265 is a vulnerability of currently unknown severity. Huawei Mobile WiFi E5151 routers with software before E5151s-2TCPU-V200R001B146D27SP00C00 and E5186 routers with software before V200R001B310D01SP00C00 allow DNS query packets using the static source port, which makes it easier for remote attackers to spoof responses via unspecified vectors.. EPSS estimates a 1.91% chance of exploitation in the next 30 days.
Description
Huawei Mobile WiFi E5151 routers with software before E5151s-2TCPU-V200R001B146D27SP00C00 and E5186 routers with software before V200R001B310D01SP00C00 allow DNS query packets using the static source port, which makes it easier for remote attackers to spoof responses via unspecified vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | E5151 Firmware | <= e5151s-2tcpu-v200r001b141d13sp00c1080 |
| Huawei | E5186 Firmware | <= v200r001b306d01c00 |
References
- https://www.kb.cert.org/vuls/id/972224Third Party Advisory, US Government Resource
- https://www.kb.cert.org/vuls/id/972224Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-8265?
How severe is CVE-2015-8265?
How do I fix CVE-2015-8265?
Are you affected by CVE-2015-8265?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
