6.5
CVSSv3

CVE-2020-9201

Published: 24/12/2020 Updated: 28/12/2020
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 294
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

There is an out-of-bounds read vulnerability in some versions of NIP6800, Secospace USG6600 and USG9500. The software reads data past the end of the intended buffer when parsing DHCP messages including crafted parameter. Successful exploit could cause certain service abnormal.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei nip6800_firmware v500r001c30

huawei nip6800_firmware v500r001c60spc500

huawei nip6800_firmware v500r005c00

huawei secospace_usg6600_firmware v500r001c30spc200

huawei secospace_usg6600_firmware v500r001c30spc600

huawei secospace_usg6600_firmware v500r001c60spc500

huawei secospace_usg6600_firmware v500r005c00

huawei usg9500_firmware v500r001c30spc200

huawei usg9500_firmware v500r001c30spc600

huawei usg9500_firmware v500r001c60spc500

huawei usg9500_firmware v500r005c00