Metrics
No CVSS v4.0
Attack Vector Network
Attack Complexity Low
Privileges Required Low
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication Single
Confidentiality Impact None
Integrity Impact None
Availability Impact Partial
This CVE is not in the KEV list.
The EPSS score is 0.00166.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Huawei
Subscribe
|
Ar120-s
Subscribe
Ar120-s Firmware
Subscribe
Ar1200
Subscribe
Ar1200-s
Subscribe
Ar1200-s Firmware
Subscribe
Ar1200 Firmware
Subscribe
Ar150
Subscribe
Ar150-s
Subscribe
Ar150-s Firmware
Subscribe
Ar150 Firmware
Subscribe
Ar160
Subscribe
Ar160 Firmware
Subscribe
Ar200
Subscribe
Ar200-s
Subscribe
Ar200-s Firmware
Subscribe
Ar200 Firmware
Subscribe
Ar2200
Subscribe
Ar2200-s
Subscribe
Ar2200-s Firmware
Subscribe
Ar2200 Firmware
Subscribe
Ar3200
Subscribe
Ar3200 Firmware
Subscribe
Ar3600
Subscribe
Ar3600 Firmware
Subscribe
Ar510
Subscribe
Ar510 Firmware
Subscribe
Netengine16ex
Subscribe
Netengine16ex Firmware
Subscribe
Srg1300
Subscribe
Srg1300 Firmware
Subscribe
Srg2300
Subscribe
Srg2300 Firmware
Subscribe
Srg3300
Subscribe
Srg3300 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29900 | There is a few bytes out-of-bounds read vulnerability in some Huawei products. The software reads data past the end of the intended buffer when parsing certain message, an authenticated attacker could exploit this vulnerability by sending crafted messages to the device. Successful exploit may cause service abnormal in specific scenario.Affected product versions include:AR120-S versions V200R007C00SPC900,V200R007C00SPCa00 |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-08-04T10:19:19.924Z
Reserved: 2020-02-18T00:00:00
Link: CVE-2020-9071
No data.
Status : Modified
Published: 2020-06-01T15:15:14.840
Modified: 2024-11-21T05:39:58.290
Link: CVE-2020-9071
No data.
OpenCVE Enrichment
No data.
EUVD