← Back

CVE-2019-5294

nvd nist
Published: Nov 13, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

There is an out of bound read vulnerability in some Huawei products. A remote, unauthenticated attacker may send a corrupt or crafted message to the affected products. Due to a buffer read overflow error when parsing the message, successful exploit may cause some service to be abnormal.

Affected (46)

16 products
Ar120 S Firmware
Ar1200 Firmware
Ar1200 S Firmware
Ar150 Firmware
Ar150 S Firmware
Ar160 Firmware
Ar200 Firmware
Ar200 S Firmware
Ar2200 Firmware
Ar2200 S Firmware
Ar3200 Firmware
Ar3600 Firmware
Netengine16ex Firmware
Srg1300 Firmware
Srg2300 Firmware
Srg3300 Firmware
Configuration A
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar120 S
All versions
Configuration B
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar1200
All versions
Configuration C
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar1200 S
All versions
Configuration D
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar150
All versions
Configuration E
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar150 S
All versions
Configuration F
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar160
All versions
Configuration G
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar200
All versions
Configuration H
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar200 S
All versions
Configuration I
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar2200
All versions
Configuration J
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar2200 S
All versions
Configuration K
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Running on/withPlatform Versions
Huawei
Ar3200
All versions
Configuration L
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar3600
All versions
Configuration M
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Netengine16ex
All versions
Configuration N
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Srg1300
All versions
Configuration O
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Srg2300
All versions
Configuration P
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c20
Version v200r006c10
Version v200r007c00
Running on/withPlatform Versions
Huawei
Srg3300
All versions

References (2)

Timeline

No history available yet.