SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2013-4630

Stack-based buffer overflow on Huawei AR 150, 200, 1200, 2200, and 3200 routers, when SNMPv3 debugging is enabled, allows remote attackers to execute arbitrary code via malformed SNMPv3 requests.

HIGH 7.6EPSS 3.91%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (3.91%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

Stack-based buffer overflow on Huawei AR 150, 200, 1200, 2200, and 3200 routers, when SNMPv3 debugging is enabled, allows remote attackers to execute arbitrary code via malformed SNMPv3 requests.

CVSS 2.0
7.6 HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
EPSS
3.91% probability · 90th percentile
CISA KEV
Not listed
Weakness
CWE-119
Affected
huawei/ar 1200 · huawei/ar 150 · huawei/ar 200 · huawei/ar 2200 · huawei/ar 3200
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.