CVE-2018-7958: Huawei Espace 7950 Firmware
High severity, CVSS 7.4. EPSS: 1.1% chance of exploitation in the next 30 days.
There is an anonymous TLS cipher suites supported vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to hijack the connection from a client when the user signs up to log in by TLS. Due to insufficient authentication, which may be exploited to intercept and tamper with the data information.
Affected products
- Huawei Espace 7950 Firmware: version v200r003c30 only
Published 2018-11-27. Last modified 2026-06-17.