Multiple Huawei Campus switches allow remote attackers to enumerate usernames via vectors involving use of SSH by the maintenance terminal.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/69302 | third party advisory vdb entry |
http://www.huawei.com/us/psirt/security-advisories/2014/hw-362701 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/97763 | third party advisory vdb entry |