Vulnerability Description
Huawei IPTV STB with earlier than IPTV STB V100R003C01LMYTa6SPC001 versions has an authentication bypass vulnerability. An attacker could exploit this vulnerability to access the serial interface and modify the configuration. Successful exploit could lead to the authentication bypass and view channels by free.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Iptv Stb Firmware | < v100r003c01lmyta6spc001 |
| Huawei | Iptv Stb | - |
References
- http://security.my/post/165370836947/cve-2017-8176Third Party Advisory
- http://support.huawei.com/carrier/navi?coltype=software?lang=en#col=software&det
- http://security.my/post/165370836947/cve-2017-8176Third Party Advisory
- http://support.huawei.com/carrier/navi?coltype=software?lang=en#col=software&det
FAQ
What is CVE-2017-8176?
CVE-2017-8176 is a vulnerability with a CVSS score of 7.5 (HIGH). Huawei IPTV STB with earlier than IPTV STB V100R003C01LMYTa6SPC001 versions has an authentication bypass vulnerability. An attacker could exploit this vulnerability to access the serial interface and ...
How severe is CVE-2017-8176?
CVE-2017-8176 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-8176?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Iptv Stb Firmware, Huawei Iptv Stb.