7.8
CVSSv2

CVE-2019-5285

Published: 04/06/2019 Updated: 26/07/2019
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Some Huawei S series switches have a DoS vulnerability. An unauthenticated remote attacker can send crafted packets to the affected device to exploit this vulnerability. Due to insufficient verification of the packets, successful exploitation may cause the device reboot and denial of service (DoS) condition. (Vulnerability ID: HWPSIRT-2019-03109)

Vulnerability Trend

Affected Products

Vendor Product Versions
HuaweiS12700 FirmwareV200r005c00, V200r006c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS1700 FirmwareV200r008c00, V200r009c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS2300 FirmwareV200r003c00, V200r005c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS2700 FirmwareV200r005c00, V200r006c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS5300 FirmwareV200r003c00, V200r005c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS5700 FirmwareV200r003c00, V200r005c00, V200r006c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS600-e FirmwareV200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS6300 FirmwareV200r003c00, V200r005c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS6700 FirmwareV200r003c00, V200r005c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS7700 FirmwareV200r003c00, V200r005c00, V200r006c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS7900 FirmwareV200r011c10, V200r012c00, V200r013c00
HuaweiS9300 FirmwareV200r003c00, V200r008c00, V200r008c10, V200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS9300x FirmwareV200r010c00, V200r011c10, V200r012c00, V200r013c00
HuaweiS9700 FirmwareV200r003c00, V200r005c00, V200r006c00, V200r007c00, V200r008c00, V200r010c00, V200r011c10, V200r012c00, V200r013c00

Vendor Advisories

Some Huawei S series switches have a DoS vulnerability An unauthenticated remote attacker can send crafted packets to the affected device to exploit this vulnerability Due to insufficient verification of the packets, successful exploitation may cause the device reboot and denial of service (DoS) condition(Vulnerability ID: HWPSIRT-2019-03109) T ...