← Back

CVE-2020-9071

nvd nist
Published: Jun 1, 2020Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

There is a few bytes out-of-bounds read vulnerability in some Huawei products. The software reads data past the end of the intended buffer when parsing certain message, an authenticated attacker could exploit this vulnerability by sending crafted messages to the device. Successful exploit may cause service abnormal in specific scenario.Affected product versions include:AR120-S versions V200R007C00SPC900,V200R007C00SPCa00

Affected (68)

17 products
Ar120 S Firmware
Ar1200 Firmware
Ar1200 S Firmware
Ar150 Firmware
Ar150 S Firmware
Ar160 Firmware
Ar200 Firmware
Ar200 S Firmware
Ar2200 Firmware
Ar2200 S Firmware
Ar3200 Firmware
Ar3600 Firmware
Ar510 Firmware
Netengine16ex Firmware
Srg1300 Firmware
Srg2300 Firmware
Srg3300 Firmware
Configuration A
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spca00
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar120 S
All versions
Configuration B
6 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spca00
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar1200
All versions
Configuration C
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar1200 S
All versions
Configuration D
5 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar150
All versions
Configuration E
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar150 S
All versions
Configuration F
5 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar160
All versions
Configuration G
5 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar200
All versions
Configuration H
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar200 S
All versions
Configuration I
6 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spca00
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar2200
All versions
Configuration J
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar2200 S
All versions
Configuration K
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spca00
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar3200
All versions
Configuration L
5 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spc900pwe
Version v200r007c00spcb00
Version v200r007c00spcb00pwe
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Ar3600
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r007c00spc900
Running on/withPlatform Versions
Huawei
Ar510
All versions
Configuration N
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Netengine16ex
All versions
Configuration O
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Srg1300
All versions
Configuration P
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Srg2300
All versions
Configuration Q
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00spc900
Version v200r007c00spcb00
Version v200r007c00spcc00
Running on/withPlatform Versions
Huawei
Srg3300
All versions

References (2)

Timeline

No history available yet.