3.3
CVSSv2

CVE-2020-1866

Published: 13/01/2021 Updated: 19/01/2021
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 294
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended buffer when parsing certain crafted DHCP messages. Successful exploit could cause certain service abnormal. Affected product versions include:NIP6800 versions V500R001C30,V500R001C60SPC500,V500R005C00;S12700 versions V200R008C00;S2700 versions V200R008C00;S5700 versions V200R008C00;S6700 versions V200R008C00;S7700 versions V200R008C00;S9700 versions V200R008C00;Secospace USG6600 versions V500R001C30SPC200,V500R001C30SPC600,V500R001C60SPC500,V500R005C00;USG9500 versions V500R001C30SPC300,V500R001C30SPC600,V500R001C60SPC500,V500R005C00.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei nip6800_firmware v500r001c30

huawei nip6800_firmware v500r001c60spc500

huawei nip6800_firmware v500r005c00

huawei s12700_firmware v200r008c00

huawei s2700_firmware v200r008c00

huawei s5700_firmware v200r008c00

huawei s6700_firmware v200r008c00

huawei s7700_firmware v200r008c00

huawei s9700_firmware v200r008c00

huawei secospace_usg6600_firmware v500r001c30spc200

huawei secospace_usg6600_firmware v500r001c30spc600

huawei secospace_usg6600_firmware v500r001c60spc500

huawei secospace_usg6600_firmware v500r005c00

huawei usg9500_firmware v500r001c30spc300

huawei usg9500_firmware v500r001c30spc600

huawei usg9500_firmware v500r001c60spc500

huawei usg9500_firmware v500r005c00