CVE-2018-7959
CVE-2018-7959
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
27 Nov 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
There is a short key vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to intercept and decrypt the call information when the user enables SRTP to make a call. Successful exploitation may cause sensitive information leak.
Affected products
Huawei Technologies Co., Ltd. · eSpace 7950Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →