cbcvebase.
CVE-2020-1802
published 2020-04-10

CVE-2020-1802: There is an insufficient integrity validation vulnerability in several products. The device does not sufficiently validate the integrity of certain file in…

PriorityP417medium4.6CVSS 3.1
AVPACLPRNUINSUCNIHAN
EPSS
0.15%
4.7th percentile
There is an insufficient integrity validation vulnerability in several products. The device does not sufficiently validate the integrity of certain file in certain loading processes, successful exploit could allow the attacker to load a crafted file to the device through USB.Affected product versions include:OSCA-550 versions 1.0.1.23(SP2);OSCA-550A versions 1.0.1.23(SP2);OSCA-550AX versions 1.0.1.23(SP2);OSCA-550X versions 1.0.1.23(SP2).

Affected

4 ranges
VendorProductVersion rangeFixed in
huaweiosca-550_firmware
huaweiosca-550a_firmware
huaweiosca-550ax_firmware
huaweiosca-550x_firmware

CVSS provenance

nvdv3.14.6MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.