Command Injection Vulnerability in Huawei FusionCompute Software
CVE-2020-9116
7.2HIGH
What is CVE-2020-9116?
Huawei FusionCompute versions 6.5.1 and 8.0.0 are susceptible to a command injection vulnerability. An authenticated remote attacker can exploit this flaw by sending specifically crafted requests, which may lead to inadequate verification processes. This oversight allows attackers to potentially escalate their privileges within the system, posing a significant security risk. Organizations using these versions of FusionCompute should review their configurations and apply necessary updates to mitigate this vulnerability. For further details, please visit the Huawei PSIRT advisory.
Affected Version(s)
FusionCompute 6.5.1,8.0.0