CVE-2017-15352 describes an improper access control vulnerability in various Huawei OceanStor V3 series storage systems, including the 2800, 5300, 5500, 5600, and 5800 models. An attacker with high privileges could exploit this flaw to query sensitive information or disrupt services. The vulnerability has a low severity CVSS score of 3.1, indicating a network-adjacent attack vector with high attack complexity and limited impact on confidentiality and availability. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
v300r003c00CPE matchmatch criteria | cpe:2.3:o:huawei:oceanstor_2800_firmware:v300r003c00:*:*:*:*:*:*:* | ||
v300r003c20CPE matchmatch criteria | cpe:2.3:o:huawei:oceanstor_2800_firmware:v300r003c20:*:*:*:*:*:*:* | ||
v300r003c00CPE matchmatch criteria | cpe:2.3:o:huawei:oceanstor_5300_firmware:v300r003c00:*:*:*:*:*:*:* | ||
v300r003c10CPE matchmatch criteria | cpe:2.3:o:huawei:oceanstor_5300_firmware:v300r003c10:*:*:*:*:*:*:* | ||
v300r003c20CPE matchmatch criteria | cpe:2.3:o:huawei:oceanstor_5300_firmware:v300r003c20:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.