CVE-2015-8332
Last modified
CVE-2015-8332 is a vulnerability of currently unknown severity. Huawei Video Content Management (VCM) before V100R001C10SPC001 does not properly "authenticate online user identities and privileges," which allows remote authenticated users to gain privileges and perform a case operation as another user via a crafted message, aka "Horizontal Privilege Escalation Vulnerability.". EPSS estimates a 1.01% chance of exploitation in the next 30 days.
Description
Huawei Video Content Management (VCM) before V100R001C10SPC001 does not properly "authenticate online user identities and privileges," which allows remote authenticated users to gain privileges and perform a case operation as another user via a crafted message, aka "Horizontal Privilege Escalation Vulnerability."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Vcm5010 Firmware | <= v100r001c10b010 |
| Huawei | Vcm5020 Firmware | <= v100r001c10b010 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-8332?
How severe is CVE-2015-8332?
How do I fix CVE-2015-8332?
Are you affected by CVE-2015-8332?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
