Vulnerability Description
Unrestricted file upload vulnerability in Huawei Honor Cube Wireless Router WS860s before V100R001C02B222 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Honor Cube Wireless Router Ws860S Firewall | <= v100r001c02b219 |
| Huawei | Honor Cube Wireless Router Ws860S | - |
References
- http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hVendor Advisory
- http://www.securityfocus.com/bid/69806
- http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hVendor Advisory
- http://www.securityfocus.com/bid/69806
FAQ
What is CVE-2014-9134?
CVE-2014-9134 is a vulnerability with a CVSS score of 10.0 (HIGH). Unrestricted file upload vulnerability in Huawei Honor Cube Wireless Router WS860s before V100R001C02B222 allows remote attackers to execute arbitrary code by uploading a file with an executable exten...
How severe is CVE-2014-9134?
CVE-2014-9134 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-9134?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Honor Cube Wireless Router Ws860S Firewall, Huawei Honor Cube Wireless Router Ws860S.