CVE-2017-17290 Information
Feb 14, 2021
cve
Description
The Light Directory Access Protocol (LDAP) clients of Huawei TE60 with software V600R006C00 ViewPoint 9030 with software V100R011C02 V100R011C03 have a resource management errors vulnerability. An unauthenticated remote attacker may make the LDAP server not respond to the client’s request by controlling the LDAP server. Due to improper management of LDAP connection resource a successful exploit may cause the connection resource exhausted of the LDAP client.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Reference
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171213-01-ldap-en
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
NONE
Base Score
HIGH
Base Severity
7.5
Share on: