CVE-2017-8139: Huawei Hedex Lite

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

HedEx Earlier than V200R006C00 versions have the stored cross-site scripting (XSS) vulnerability. Attackers can exploit the vulnerability to plant malicious scripts into the configuration file to interrupt the services of legitimate users.

Affected products

  • Huawei Hedex Lite: before v200r006c00 (fixed in v200r006c00)

Published 2017-11-22. Last modified 2026-06-17.