VendorsHuaweioceanstor_uds_firmwareany version
Vulnerabilities

Huawei OceanStor UDS Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2015-2252
Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to execute arbitrary code with root privileges via a crafted UDS patch with shell scripts.
Published 2017-06-08 · Modified
9.3EPSS 0.022
CVE-2015-2254
Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to capture and change patch loading information resulting in the deletion of directory files and compromise of system functions when loading a patch.
Published 2019-03-13 · Modified
9.1EPSS 0.009
CVE-2015-2251
The DeviceManager in Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to obtain sensitive information via a crafted UDS patch with JavaScript.
Published 2017-06-08 · Modified
7.5EPSS 0.010
CVE-2015-2253
The XML interface in Huawei OceanStor UDS devices with software before V100R002C01SPC102 allows remote authenticated users to obtain sensitive information via a crafted XML document.
Published 2017-06-08 · Modified
5.0EPSS 0.006