CVE-2016-6824: Huawei AC6003 Firmware

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial of service (device restart) via crafted CAPWAP packets.

Affected products

  • Huawei AC6003 Firmware: up to and including v200r005c10; up to and including v200r006c00
  • Huawei AC6005 Firmware: up to and including v200r005c10; up to and including v200r006c00
  • Huawei AC6605 Firmware: up to and including v200r005c10; version v200r006c00 only
  • Huawei ACU2 Firmware: up to and including v200r005c10; up to and including v200r006c00

Published 2016-09-22. Last modified 2026-06-17.