CVE-2015-8334: Huawei VCN500 Firmware

High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.

SQL injection vulnerability in the Operation and Maintenance Unit (OMU) in Huawei VCN500 before V100R002C00SPC201 allows remote authenticated users to execute arbitrary SQL commands via a crafted HTTP request.

Affected products

  • Huawei VCN500 Firmware: version v100r002c00spc200 only; version v100r002c00spc200b010 only

Published 2017-08-29. Last modified 2026-06-17.