CVE Feed

    Dashboard / CVE / CVE-2016-6901

    CVE-2016-6901

    Format string vulnerability in Huawei AR100, AR120, AR150, AR200, AR500, AR550, AR1200, AR2200, AR2500, AR3200, and AR3600 routers with software before V200R007C00SPC900 and NetEngine 16EX routers with software before V200R007C00SPC900 allows remote authenticated users to cause a denial of service via format string specifiers in vectors involving partial commands.

    Published:Sep 26, 2016
    Last Modified:Apr 12, 2025
    EPS:Sep 26, 2016
    EPSS Score:0.00233
    CVSS Score:6.5

    Affected Products

    Vendor
    Huawei
    Product
    Ar100
    Vendor
    Huawei
    Product
    Ar120
    Vendor
    Huawei
    Product
    Ar1200
    Vendor
    Huawei
    Product
    Ar150
    Vendor
    Huawei
    Product
    Ar200
    Vendor
    Huawei
    Product
    Ar2200
    Vendor
    Huawei
    Product
    Ar2500
    Vendor
    Huawei
    Product
    Ar3200
    Vendor
    Huawei
    Product
    Ar3600
    Vendor
    Huawei
    Product
    Ar500
    Vendor
    Huawei
    Product
    Ar550
    Vendor
    Huawei
    Product
    Ar Firmware
    Vendor
    Huawei
    Product
    Netengine 16ex
    Vendor
    Huawei
    Product
    Netengine 16ex Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High