« Volver al listado

CVE-2016-6824

Estado: ModificadaMedia (6.5)—

Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial of service (device restart) via crafted CAPWAP packets.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (4)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2016-6824",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.8,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:S/C:N/I:N/A:C",
          "authentication": "SINGLE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 6.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 6.5,
          "attackVector": "NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 2.8
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2016-09-22T15:59:07.443",
  "references": [
    {
      "url": "http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160817-01-ac-en",
      "tags": [
        "VDB Entry"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/92506",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160817-01-ac-en",
      "tags": [
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/92506",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-20"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial of service (device restart) via crafted CAPWAP packets."
    },
    {
      "lang": "es",
      "value": "Controladores de acceso Huawei AC6003, AC6005, AC6605 y ACU2 con software en versiones anteriores a V200R006C10SPC200 permite a usuarios remotos autenticados provocar una denegación de servicio (reinicio de dispositivo) a través de paquetes CAPWAP manipulados."
    }
  ],
  "lastModified": "2026-06-17T00:51:50.463",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:huawei:ac6003_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9F19F953-42DA-4268-82F9-882832CDC0DD",
              "versionEndIncluding": "v200r005c10"
            },
            {
              "criteria": "cpe:2.3:o:huawei:ac6003_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "746998C5-5D0A-4B04-9B7E-100B3E29E1BB",
              "versionEndIncluding": "v200r006c00"
            },
            {
              "criteria": "cpe:2.3:o:huawei:ac6005_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4326174E-9187-49A0-AB05-B450B6C53F31",
              "versionEndIncluding": "v200r005c10"
            },
            {
              "criteria": "cpe:2.3:o:huawei:ac6005_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3B78B3D8-AEF9-4529-8C98-0C1A5C1EFB27",
              "versionEndIncluding": "v200r006c00"
            },
            {
              "criteria": "cpe:2.3:o:huawei:ac6605_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8AB7F764-5246-495B-B342-8D4C8168670B",
              "versionEndIncluding": "v200r005c10"
            },
            {
              "criteria": "cpe:2.3:o:huawei:ac6605_firmware:v200r006c00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BEDF9639-FC4A-4749-9AF7-E7FBCF4147B2"
            },
            {
              "criteria": "cpe:2.3:o:huawei:acu2_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5F0E0490-ADDB-410C-9C76-A10733AB682D",
              "versionEndIncluding": "v200r005c10"
            },
            {
              "criteria": "cpe:2.3:o:huawei:acu2_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AC142E9C-C281-42DC-B254-6AC7D6B12855",
              "versionEndIncluding": "v200r006c00"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:huawei:ac6003:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "50521400-DB04-4EA9-A98D-A9A893E8054F"
            },
            {
              "criteria": "cpe:2.3:h:huawei:ac6005:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "3681DA94-7184-4DC6-BD73-FCE2DB808F07"
            },
            {
              "criteria": "cpe:2.3:h:huawei:ac6605:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "BA1E5AE5-EBB2-4E05-A3C7-E2CA54205FF7"
            },
            {
              "criteria": "cpe:2.3:h:huawei:acu2:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "BF525629-AD0D-4CDC-A979-712C841FF7C6"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}