HIGH · 8.8

CVE-2014-9696

The Hyper Module Management (HMM) software of Huawei Tecal E9000 Chassis V100R001C00SPC160 and earlier versions allows the operator to modify the user configuration of iMana through privilege escalati...

Vulnerability Description

The Hyper Module Management (HMM) software of Huawei Tecal E9000 Chassis V100R001C00SPC160 and earlier versions allows the operator to modify the user configuration of iMana through privilege escalation.

CVSS Score

8.8

HIGH

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
HuaweiTecal E9000 Chassis Firmware<= v100r001c00spc160
HuaweiTecal E9000 Chassis-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-9696?

CVE-2014-9696 is a vulnerability with a CVSS score of 8.8 (HIGH). The Hyper Module Management (HMM) software of Huawei Tecal E9000 Chassis V100R001C00SPC160 and earlier versions allows the operator to modify the user configuration of iMana through privilege escalati...

How severe is CVE-2014-9696?

CVE-2014-9696 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-9696?

Check the references section above for vendor advisories and patch information. Affected products include: Huawei Tecal E9000 Chassis Firmware, Huawei Tecal E9000 Chassis.