Certain HP Access Controller, Fabric Module, Firewall, Router, Switch, and UTM Appliance products; certain HP 3Com Access Controller, Router, and Switch products; certain HP H3C Access Controller, Firewall, Router, Switch, and Switch and Route Processing Unit products; and certain Huawei Firewall/Gateway, Router, Switch, and Wireless products do not properly implement access control as defined in h3c-user.mib 2.0 and hh3c-user.mib 2.0, which allows remote authenticated users to discover credentials in UserInfoEntry values via an SNMP request with the read-only community.
Metrics
No CVSS v4.0
No CVSS v3.1
No CVSS v3.0
Access Vector Network
Access Complexity Medium
Authentication Single
Confidentiality Impact Partial
Integrity Impact None
Availability Impact None
This CVE is not in the KEV list.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
Vendors | Products |
---|---|
Hp |
|
Huawei |
|
Configuration 1 [-]
|
Configuration 2 [-]
|
No data.
References
History
No history.

Status: PUBLISHED
Assigner: hp
Published:
Updated: 2024-08-06T19:57:50.292Z
Reserved: 2012-06-06T00:00:00
Link: CVE-2012-3268

No data.

Status : Modified
Published: 2013-02-01T11:49:52.647
Modified: 2024-11-21T01:40:32.760
Link: CVE-2012-3268

No data.