CVE-2017-2722
Last modified
CVE-2017-2722 is a vulnerability of currently unknown severity. DP300 V500R002C00,TE60 with software V100R001C01, V100R001C10, V100R003C00, V500R002C00 and V600R006C00,TP3106 with software V100R001C06 and V100R002C00,ViewPoint 9030 with software V100R011C02, V100R011C03,eCNS210_TD with software V100R004C10,eSpace 7950 with software V200R003C00 and V200R003C30,eSpace IAD with software V300R001C07SPCa00 and V300R002C01SPCb00,eSpace U1981 with software V100R001C20, V100R001C30, V200R003C00, V200R003C20 and V200R003C30 have an input validation vulnerability.A remote attacker may exploit this vulnerability by crafting a malformed packet and sending it to the device. A successful exploit could allow the attacker to cause a denial of service or execute arbitrary code.. EPSS estimates a 1.21% chance of exploitation in the next 30 days.
Description
DP300 V500R002C00,TE60 with software V100R001C01, V100R001C10, V100R003C00, V500R002C00 and V600R006C00,TP3106 with software V100R001C06 and V100R002C00,ViewPoint 9030 with software V100R011C02, V100R011C03,eCNS210_TD with software V100R004C10,eSpace 7950 with software V200R003C00 and V200R003C30,eSpace IAD with software V300R001C07SPCa00 and V300R002C01SPCb00,eSpace U1981 with software V100R001C20, V100R001C30, V200R003C00, V200R003C20 and V200R003C30 have an input validation vulnerability.A remote attacker may exploit this vulnerability by crafting a malformed packet and sending it to the device. A successful exploit could allow the attacker to cause a denial of service or execute arbitrary code.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Dp300 Firmware | v500r002c00 |
| Huawei | Te60 Firmware | v100r001c01 |
| Huawei | Te60 Firmware | v100r001c10 |
| Huawei | Te60 Firmware | v100r003c00 |
| Huawei | Te60 Firmware | v500r002c00 |
| Huawei | Te60 Firmware | v600r006c00 |
| Huawei | Tp3106 Firmware | v100r001c06 |
| Huawei | Tp3106 Firmware | v100r002c00 |
| Huawei | Viewpoint 9030 Firmware | v100r011c02 |
| Huawei | Viewpoint 9030 Firmware | v100r011c03 |
| Huawei | Ecns210 Td Firmware | v100r004c10 |
| Huawei | Espace 7950 Firmware | v200r003c00 |
| Huawei | Espace 7950 Firmware | v200r003c30 |
| Huawei | Espace Iad Firmware | v300r001c07spca00 |
| Huawei | Espace Iad Firmware | v300r002c01spcb00 |
| Huawei | Espace U1981 Firmware | v100r001c20 |
| Huawei | Espace U1981 Firmware | v100r001c30 |
| Huawei | Espace U1981 Firmware | v200r003c00 |
| Huawei | Espace U1981 Firmware | v200r003c20 |
| Huawei | Espace U1981 Firmware | v200r003c30 |
References
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170419-01-pse-enIssue Tracking, Vendor Advisory
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170419-01-pse-enIssue Tracking, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-2722?
How severe is CVE-2017-2722?
How do I fix CVE-2017-2722?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-2716The camerafs driver in Mate 9 Versions earlier than MHA-AL00…
- CVE-2017-2717honor 8 Pro with software Duke-L09C10B120 and earlier versio…
- CVE-2017-2718FusionSphere OpenStack with software V100R006C00 and V100R00…8.8
- CVE-2017-2719FusionSphere OpenStack with software V100R006C00 and V100R00…
- CVE-2017-2720FusionSphere OpenStack V100R006C00 has an information exposu…
- CVE-2017-2721Some Huawei smart phones with software Berlin-L21C10B130,Ber…
- CVE-2017-2723The Files APP 7.1.1.308 and earlier versions in some Huawei …
- CVE-2017-2724Bastet in P10 Plus and P10 smart phones with software earlie…
- CVE-2017-2725Bastet in P10 Plus and P10 smart phones with software earlie…
- CVE-2017-2726Bastet in P10 Plus and P10 smart phones with software earlie…
- CVE-2017-2727Huawei P9 smart phones with software versions earlier before…
- CVE-2017-2728Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and ea…
Are you affected by CVE-2017-2722?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
