CVE-2020-9094

7.5HIGH

Key Information:

Vendor
Huawei
Vendor
CVE Published:
29 December 2020

Summary

There is an out of bound read vulnerability in some verisons of Huawei CloudEngine product. A module does not deal with specific message properly. Attackers can exploit this vulnerability by sending malicious packet. This can lead to denial of service.

Affected Version(s)

CloudEngine 12800 V200R019C00SPC800

CloudEngine 5800 V200R019C00SPC800

CloudEngine 6800 V200R005C20SPC800

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.