MEDIUM
Some Huawei products have an insufficient input verification vulnerability
Published Oct 12, 2020
6.5
MEDIUMCVSS 3.1
EPSS 0.36%
Description
Some Huawei products have an insufficient input verification vulnerability. Attackers can exploit this vulnerability in the LAN to cause service abnormal on affected devices.Affected product versions include:HiRouter-CD30-10 version 10.0.2.5;HiRouter-CT31-10 version 10.0.2.20;WS5200-12 version 10.0.1.9;WS5281-10 version 10.0.5.10;WS5800-10 version 10.0.3.25;WS7100-10 version 10.0.5.21;WS7200-10 version 10.0.5.21.
Affected products
No data.
Configuration 1
AND
- ≥ 10.0.2.5 · < 10.0.5.7
Running on/with
- n/a
Configuration 2
AND
- ≥ 10.0.2.20 · < 10.0.2.37
Running on/with
- n/a
Configuration 3
AND
- ≥ 10.0.1.9 · ≤ 10.0.5.6
Configuration 4
AND
- ≥ 10.0.5.10 · < 10.0.5.32
Configuration 5
AND
- ≥ 10.0.3.25 · < 10.0.3.33
Configuration 6
AND
- ≥ 10.0.5.21 · < 10.0.5.37
Configuration 7
AND
- ≥ 10.0.5.21 · < 10.0.5.37
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-29951 Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200930-01-verification-en x_refsource_MISCVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-29951 | Advisory | |
| https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200930-01-verification-en | x_refsource_MISCVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner huawei
Published Oct 12, 2020
Updated Aug 4, 2024
Reserved Feb 18, 2020
Link CVE-2020-9122
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2020-29951 Assigner huawei
Published Oct 12, 2020
Updated Aug 4, 2024
Exploited since n/a
Link EUVD-2020-29951