Certain HP Access Controller, Fabric Module, Firewall, Router, Switch, and UTM Appliance products; certain HP 3Com Access Controller, Router, and Switch products; certain HP H3C Access Controller, Firewall, Router, Switch, and Switch and Route Processing Unit products; and certain Huawei Firewall/Gateway, Router, Switch, and Wireless products do not properly implement access control as defined in h3c-user.mib 2.0 and hh3c-user.mib 2.0, which allows remote authenticated users to discover credentials in UserInfoEntry values via an SNMP request with the read-only community.
                
            Metrics
No CVSS v4.0
No CVSS v3.1
No CVSS v3.0
Access Vector Network
Access Complexity Medium
Authentication Single
Confidentiality Impact Partial
Integrity Impact None
Availability Impact None
This CVE is not in the KEV list.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products | 
|---|---|
| Hp | 
 | 
| Huawei | 
 | 
Configuration 1 [-]
| 
 | 
Configuration 2 [-]
| 
 | 
No data.
References
        History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: hp
Published:
Updated: 2024-08-06T19:57:50.292Z
Reserved: 2012-06-06T00:00:00
Link: CVE-2012-3268
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Deferred
Published: 2013-02-01T11:49:52.647
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-3268
 Redhat
                        Redhat
                    No data.