Huawei CloudLink Board version 20.0.0; DP300 version V500R002C00; RSE6500 versions V100R001C00, V500R002C00, and V500R002C00SPC900; and TE60 versions V500R002C00, V600R006C00, V600R006C00SPC200, V600R006C00SPC300, V600R006C10, V600R019C00, and V600R019C00SPC100 have an information leak vulnerability
Published Feb 17, 2020
7.5
HIGHCVSS 3.1
EPSS 0.97%
Description
Huawei CloudLink Board version 20.0.0; DP300 version V500R002C00; RSE6500 versions V100R001C00, V500R002C00, and V500R002C00SPC900; and TE60 versions V500R002C00, V600R006C00, V600R006C00SPC200, V600R006C00SPC300, V600R006C10, V600R019C00, and V600R019C00SPC100 have an information leak vulnerability. An unauthenticated, remote attacker can make a large number of attempts to guess information. Successful exploitation may cause information leak.
Affected products
-
- Version 20.0.0StatusaffectedConstraints-
- Version
-
- Version V500R002C00StatusaffectedConstraints-
- Version V600R006C00StatusaffectedConstraints-
- Version V600R006C00SPC200StatusaffectedConstraints-
- Version V600R006C00SPC300StatusaffectedConstraints-
- Version V600R006C10StatusaffectedConstraints-
- Version V600R019C00StatusaffectedConstraints-
- Version V600R019C00SPC100StatusaffectedConstraints-
- Version
-
- Version V100R001C00StatusaffectedConstraints-
- Version V500R002C00StatusaffectedConstraints-
- Version V500R002C00SPC900StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Huawei | CloudLink Board | n/a |
| ||||||||||||||||||||||||
| Huawei | TE60 | n/a |
| ||||||||||||||||||||||||
| Huawei | n/a | n/a |
|
Configuration 1
- 20.0.0
Running on/with
- n/a
Configuration 2
- v500r002c00
Configuration 3
- v100r001c00
- v500r002c00
- v500r002c00spc900
Configuration 4
- v500r002c00
- v600r006c00
- v600r006c00spc200
- v600r006c00spc300
- v600r006c10
- v600r019c00
- v600r019c00spc100
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
No CWE recorded.
References (1)
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200207-01-te-en x_refsource_CONFIRMVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200207-01-te-en | x_refsource_CONFIRMVendor Advisory |
Change history (0)
No recorded changes yet.