← Back

CVE-2018-7994

nvd nist
Published: Jul 31, 2018Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Some Huawei products IPS Module V500R001C50; NGFW Module V500R001C50; V500R002C10; NIP6300 V500R001C50; NIP6600 V500R001C50; NIP6800 V500R001C50; Secospace USG6600 V500R001C50; USG9500 V500R001C50 have a memory leak vulnerability. The software does not release allocated memory properly when processing Protal questionnaire. A remote attacker could send a lot questionnaires to the device, successful exploit could cause the device to reboot since running out of memory.

Affected (8)

7 products
Ips Module
Ngfw Module
Nip6300
Nip6600
Nip6800
Secospace Usg6600
Usg9500
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v500r001c50
Running on/withPlatform Versions
Huawei
Ips Module
All versions
Configuration B
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v500r001c50
Version v500r002c10
Running on/withPlatform Versions
Huawei
Ngfw Module
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v500r001c50
Running on/withPlatform Versions
Huawei
Nip6300
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v500r001c50
Running on/withPlatform Versions
Huawei
Nip6600
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v500r001c50
Running on/withPlatform Versions
Huawei
Nip6800
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v500r001c50
Running on/withPlatform Versions
Huawei
Secospace Usg6600
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v500r001c50
Running on/withPlatform Versions
Huawei
Usg9500
All versions

References (2)

Timeline

No history available yet.