The CIDAM Protocol on some Huawei Products has multiple input validation vulnerabilities due to insufficient validation of specific messages when the protocol is implemented
Published Mar 9, 2018
6.5
MEDIUMCVSS 3.0
EPSS 0.73%
Description
The CIDAM Protocol on some Huawei Products has multiple input validation vulnerabilities due to insufficient validation of specific messages when the protocol is implemented. An authenticated remote attacker could send a malicious message to a target system. Successful exploit could allow the attacker to tamper with business and make the system abnormal. Affected Huawei Products are: DP300 versions V500R002C00, V500R002C00B010, V500R002C00B011, V500R002C00B012, V500R002C00B013, V500R002C00B014, V500R002C00B017, V500R002C00B018, V500R002C00SPC100, V500R002C00SPC200, V500R002C00SPC300, V500R002C00SPC400, V500R002C00SPC500, V500R002C00SPC600, V500R002C00SPC800, V500R002C00SPC900, V500R002C00SPCa00; RP200 versions V500R002C00SPC200, V600R006C00, V600R006C00SPC200, V600R006C00SPC300, V600R006C00SPC400, V600R006C00SPC500; TE30 versions V100R001C10SPC300, V100R001C10SPC500, V100R001C10SPC600, V100R001C10SPC700B010, V500R002C00SPC200, V500R002C00SPC500, V500R002C00SPC600, V500R002C00SPC700, V500R002C00SPC900, V500R002C00SPCb00, V600R006C00, V600R006C00SPC200, V600R006C00SPC300, V600R006C00SPC400, V600R006C00SPC500; TE40 versions V500R002C00SPC600, V500R002C00SPC700, V500R002C00SPC900, V500R002C00SPCb00, V600R006C00, V600R006C00SPC200, V600R006C00SPC300, V600R006C00SPC400, V600R006C00SPC500; TE50 versions V500R002C00SPC600, V500R002C00SPC700, V500R002C00SPCb00, V600R006C00, V600R006C00SPC200, V600R006C00SPC300, V600R006C00SPC400, V600R006C00SPC500; TE60 versions V100R001C10, V100R001C10B001, V100R001C10B002, V100R001C10B010, V100R001C10B011, V100R001C10B012, V100R001C10B013, V100R001C10B014, V100R001C10B016, V100R001C10B017, V100R001C10B018, V100R001C10B019, V100R001C10SPC400, V100R001C10SPC500, V100R001C10SPC600, V100R001C10SPC700, V100R001C10SPC800B011, V100R001C10SPC900, V500R002C00, V500R002C00B010, V500R002C00B011, V500R002C00SPC100, V500R002C00SPC200, V500R002C00SPC300, V500R002C00SPC600, V500R002C00SPC700, V500R002C00SPC800, V500R002C00SPC900, V500R002C00SPCa00, V500R002C00SPCb00, V500R002C00SPCd00, V500R002C00SPCe00, V600R006C00, V600R006C00SPC100, V600R006C00SPC200, V600R006C00SPC300, V600R006C00SPC400, V600R006C00SPC500; eSpace U1981 version V200R003C20SPC900.
Affected products
- Vendor n/a Product DP300, RP200, TE30, TE40, TE50, TE60, eSpace U1981 Defaultn/a
- Version V100R001C10StatusaffectedConstraints-
- Version V100R001C10B001StatusaffectedConstraints-
- Version V100R001C10B002StatusaffectedConstraints-
- Version V100R001C10B010StatusaffectedConstraints-
- Version V100R001C10B011StatusaffectedConstraints-
- Version V100R001C10B012StatusaffectedConstraints-
- Version V100R001C10B013StatusaffectedConstraints-
- Version V100R001C10B014StatusaffectedConstraints-
- Version V100R001C10B016StatusaffectedConstraints-
- Version V100R001C10B017StatusaffectedConstraints-
- Version V100R001C10B018StatusaffectedConstraints-
- Version V100R001C10B019StatusaffectedConstraints-
- Version V100R001C10SPC300StatusaffectedConstraints-
- Version V100R001C10SPC400StatusaffectedConstraints-
- Version V100R001C10SPC500StatusaffectedConstraints-
- Version V100R001C10SPC600StatusaffectedConstraints-
- Version V100R001C10SPC700StatusaffectedConstraints-
- Version V100R001C10SPC700B010StatusaffectedConstraints-
- Version V100R001C10SPC800B011StatusaffectedConstraints-
- Version V100R001C10SPC900StatusaffectedConstraints-
- Version V200R003C20SPC900StatusaffectedConstraints-
- Version V500R002C00StatusaffectedConstraints-
- Version V500R002C00B010StatusaffectedConstraints-
- Version V500R002C00B011StatusaffectedConstraints-
- Version V500R002C00B012StatusaffectedConstraints-
- Version V500R002C00B013StatusaffectedConstraints-
- Version V500R002C00B014StatusaffectedConstraints-
- Version V500R002C00B017StatusaffectedConstraints-
- Version V500R002C00B018StatusaffectedConstraints-
- Version V500R002C00SPC100StatusaffectedConstraints-
- Version V500R002C00SPC200StatusaffectedConstraints-
- Version V500R002C00SPC300StatusaffectedConstraints-
- Version V500R002C00SPC400StatusaffectedConstraints-
- Version V500R002C00SPC500StatusaffectedConstraints-
- Version V500R002C00SPC600StatusaffectedConstraints-
- Version V500R002C00SPC700StatusaffectedConstraints-
- Version V500R002C00SPC800StatusaffectedConstraints-
- Version V500R002C00SPC900StatusaffectedConstraints-
- Version V500R002C00SPCa00StatusaffectedConstraints-
- Version V500R002C00SPCb00StatusaffectedConstraints-
- Version V500R002C00SPCd00StatusaffectedConstraints-
- Version V500R002C00SPCe00StatusaffectedConstraints-
- Version V600R006C00StatusaffectedConstraints-
- Version V600R006C00SPC100StatusaffectedConstraints-
- Version V600R006C00SPC200StatusaffectedConstraints-
- Version V600R006C00SPC300StatusaffectedConstraints-
- Version V600R006C00SPC400StatusaffectedConstraints-
- Version V600R006C00SPC500StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| n/a | DP300, RP200, TE30, TE40, TE50, TE60, eSpace U1981 | n/a |
|
- v500r002c00
- v500r002c00b010
- v500r002c00b011
- v500r002c00b012
- v500r002c00b013
- v500r002c00b014
- v500r002c00b017
- v500r002c00b018
- v500r002c00spc100
- v500r002c00spc200
- v500r002c00spc300
- v500r002c00spc400
- v500r002c00spc500
- v500r002c00spc600
- v500r002c00spc800
- v500r002c00spc900
- v500r002c00spca00
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
AV:N/AC:L/Au:S/C:N/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
Percentile over time
- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
Table of values (10 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 0.73% (0.00735) | 52.76th | v5 (v2026.06.15) |
| Sep 20, 2026 | 0.73% (0.00735) | 52.96th | v5 (v2026.06.15) |
| Jul 20, 2024 | 0.17% (0.00169) | 54.21th | v3 (v2023.03.01) |
| Jan 17, 2024 | 0.17% (0.00169) | 53.86th | v3 (v2023.03.01) |
| Sep 3, 2023 | 0.16% (0.00160) | 52.07th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.17% (0.00167) | 51.62th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.05% (0.01055) | 52.13th | v2 (v2022.01.01) |
| Feb 4, 2022 | 1.05% (0.01055) | 27.52th | v2 (v2022.01.01) |
| Feb 3, 2022 | 0.52% (0.00523) | 12.55th | v5 (v2026.06.15) |
| Apr 14, 2021 | 0.52% (0.00523) | 0.00th | v1 |
References (1)
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171220-02-cidam-en x_refsource_CONFIRM
| Link | Providers | Tags |
|---|---|---|
| https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171220-02-cidam-en | x_refsource_CONFIRM |
Change history (0)
No recorded changes yet.