Information Leakage Vulnerability in Huawei CloudEngine 12800 Series
CVE-2020-1861

4.4MEDIUM

Key Information:

Vendor

Huawei

Vendor
CVE Published:
28 February 2020

What is CVE-2020-1861?

In specific scenarios, an authenticated attacker may exploit an information leakage vulnerability present in the Huawei CloudEngine 12800 series. The vulnerability arises due to improper data processing by the software, potentially leading to unauthorized access to sensitive information. This issue affects multiple versions of the product, emphasizing the need for ongoing security vigilance and patch management.

Affected Version(s)

CloudEngine 12800 V200R001C00SPC600,V200R001C00SPC700,V200R002C01,V200R002C50SPC800,V200R002C50SPC800PWE,V200R003C00SPC810,V200R003C00SPC810PWE,V200R005C00SPC600,V200R005C00SPC800,V200R005C00SPC800PWE,V200R005C10,V200R005C10SPC300

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.