Vulnerability Description
FusionSphere OpenStack V100R006C00SPC102(NFV)has an improper verification of cryptographic signature vulnerability. The software does not verify the cryptographic signature. An attacker with high privilege may exploit this vulnerability to inject malicious software.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Fusionsphere Openstack | v100r006c00spc102\(nfv\) |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171018-01-fusionsVendor Advisory
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171018-01-fusionsVendor Advisory
FAQ
What is CVE-2017-8190?
CVE-2017-8190 is a vulnerability with a CVSS score of 6.7 (MEDIUM). FusionSphere OpenStack V100R006C00SPC102(NFV)has an improper verification of cryptographic signature vulnerability. The software does not verify the cryptographic signature. An attacker with high priv...
How severe is CVE-2017-8190?
CVE-2017-8190 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-8190?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Fusionsphere Openstack.