HIGH · 8.8

CVE-2014-4707

Huawei Campus S7700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9300 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9700 with software V200R001C00S...

Vulnerability Description

Huawei Campus S7700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9300 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300 allow unauthorized users to upgrade the bootrom or bootload software, bypass a Menu protection mechanism, conduct a Menu compromise attack, or bypass a Menu/upgrade protection mechanism.

CVSS Score

8.8

HIGH

CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
HuaweiCampus S7700 Firmwarev200r001c00spc300
HuaweiCampus S7700-
HuaweiCampus S9300 Firmwarev200r001c00spc300
HuaweiCampus S9300-
HuaweiCampus S9700 Firmwarev200r001c00spc300
HuaweiCampus S9700-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-4707?

CVE-2014-4707 is a vulnerability with a CVSS score of 8.8 (HIGH). Huawei Campus S7700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9300 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9700 with software V200R001C00S...

How severe is CVE-2014-4707?

CVE-2014-4707 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-4707?

Check the references section above for vendor advisories and patch information. Affected products include: Huawei Campus S7700 Firmware, Huawei Campus S7700, Huawei Campus S9300 Firmware, Huawei Campus S9300, Huawei Campus S9700 Firmware.