CVE-2017-15326
Last modified
CVE-2017-15326 is a vulnerability of currently unknown severity. DBS3900 TDD LTE V100R003C00, V100R004C10 have a weak encryption algorithm security vulnerability. DBS3900 TDD LTE supports SSL/TLS protocol negotiation using insecure encryption algorithms. EPSS estimates a 0.45% chance of exploitation in the next 30 days.
Description
DBS3900 TDD LTE V100R003C00, V100R004C10 have a weak encryption algorithm security vulnerability. DBS3900 TDD LTE supports SSL/TLS protocol negotiation using insecure encryption algorithms. If an insecure encryption algorithm is negotiated in the communication, an unauthenticated remote attacker can exploit this vulnerability to crack the encrypted data and cause information leakage.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Dbs3900 Tdd Lte Firmware | v100r003c00 |
| Huawei | Dbs3900 Tdd Lte Firmware | v100r004c10 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-15326?
How severe is CVE-2017-15326?
How do I fix CVE-2017-15326?
Are you affected by CVE-2017-15326?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
