CVE Feed

    Dashboard / CVE / CVE-2016-6825

    CVE-2016-6825

    Huawei XH620 V3, XH622 V3, and XH628 V3 servers with software before V100R003C00SPC610, RH1288 V3 servers with software before V100R003C00SPC613, RH2288 V3 servers with software before V100R003C00SPC617, and RH2288H V3 servers with software before V100R003C00SPC515 allow remote attackers to obtain passwords via a brute-force attack, related to "lack of authentication protection mechanisms."

    Published:Sep 7, 2016
    Last Modified:Apr 12, 2025
    EPS:Sep 7, 2016
    EPSS Score:0.00371
    CVSS Score:9.8

    Affected Products

    Vendor
    Huawei
    Product
    Rh1288 V3 Server
    Vendor
    Huawei
    Product
    Rh1288 V3 Server Firmware
    Vendor
    Huawei
    Product
    Rh2288 V3 Server
    Vendor
    Huawei
    Product
    Rh2288 V3 Server Firmware
    Vendor
    Huawei
    Product
    Rh2288h V3 Server
    Vendor
    Huawei
    Product
    Rh2288h V3 Server Firmware
    Vendor
    Huawei
    Product
    Xh620 V3 Server
    Vendor
    Huawei
    Product
    Xh620 V3 Server Firmware
    Vendor
    Huawei
    Product
    Xh622 V3 Server
    Vendor
    Huawei
    Product
    Xh622 V3 Server Firmware
    Vendor
    Huawei
    Product
    Xh628 V3 Server
    Vendor
    Huawei
    Product
    Xh628 V3 Server Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High