cbcvebase.
CVE-2019-5304
published 2020-01-03

CVE-2019-5304: Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request messages to the target…

PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.97%
58.0th percentile
Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request messages to the target products. Due to insufficient input validation of some parameters in the messages, successful exploit may cause the device to reset.

Affected

120 ranges· showing 25
VendorProductVersion rangeFixed in
huaweiar120-s_firmware
huaweiar120-s_firmware
huaweiar120-s_firmware
huaweiar120-s_firmware
huaweiar1200-s_firmware
huaweiar1200-s_firmware
huaweiar1200-s_firmware
huaweiar1200-s_firmware
huaweiar1200-s_firmware
huaweiar1200-s_firmware
huaweiar1200_firmware
huaweiar1200_firmware
huaweiar1200_firmware
huaweiar1200_firmware
huaweiar1200_firmware
huaweiar1200_firmware
huaweiar150-s_firmware
huaweiar150-s_firmware
huaweiar150-s_firmware
huaweiar150-s_firmware
huaweiar150-s_firmware
huaweiar150-s_firmware
huaweiar150_firmware
huaweiar150_firmware
huaweiar150_firmware

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.