CVE-2017-15335 describes a buffer overflow vulnerability in the SIP backup feature across numerous Huawei products, including various versions of DP300, IPS Module, NGFW Module, NIP series, RP200, SVN series, SeMG9811, Secospace USG series, TE series, USG9500 series, VP9660, ViewPoint series, and eSpace U1981. An unauthenticated attacker can exploit this by sending specially crafted SIP messages, leading to service disruption. Rated with a CVSS v3.0 score of 5.3 (Medium), this vulnerability has a network attack vector and low attack complexity, requiring no user interaction. While confidentiality and integrity are not impacted, successful exploitation can cause a denial of service (availability impact). There is no evidence of active exploitation, nor is exploit code publicly available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, indicating low public attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
v500r002c00CPE matchmatch criteria | cpe:2.3:o:huawei:dp300_firmware:v500r002c00:*:*:*:*:*:*:* | ||
v100r001c10CPE matchmatch criteria | cpe:2.3:o:huawei:ips_module_firmware:v100r001c10:*:*:*:*:*:*:* | ||
v100r001c20CPE matchmatch criteria | cpe:2.3:o:huawei:ips_module_firmware:v100r001c20:*:*:*:*:*:*:* | ||
v100r001c30CPE matchmatch criteria | cpe:2.3:o:huawei:ips_module_firmware:v100r001c30:*:*:*:*:*:*:* | ||
v500r001c00CPE matchmatch criteria | cpe:2.3:o:huawei:ips_module_firmware:v500r001c00:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.