CVE-2020-1879

CWE-3543 documents3 sources
Severity
3.9LOW
EPSS
0.0%
top 98.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 20
Latest updateMay 24

Description

There is an improper integrity checking vulnerability on some huawei products. The software of the affected product has an improper integrity check which may allow an attacker with high privilege to make malicious modifications.Affected product versions include:HEGE-560 versions 1.0.1.21(SP3);HEGE-570 versions 1.0.1.22(SP3);OSCA-550 versions 1.0.1.21(SP3);OSCA-550A versions 1.0.1.21(SP3);OSCA-550AX versions 1.0.1.21(SP3);OSCA-550X versions 1.0.1.21(SP3).

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:NExploitability: 0.3 | Impact: 3.6

Affected Packages6 packages

NVDhuawei/osca-550ax_firmware1.0.1.21\(sp3\)
NVDhuawei/osca-550a_firmware1.0.1.21\(sp3\)
NVDhuawei/osca-550x_firmware1.0.1.21\(sp3\)
NVDhuawei/osca-550_firmware1.0.1.21\(sp3\)
NVDhuawei/hege-560_firmware1.0.1.21\(sp3\)

🔴Vulnerability Details

2
GHSA
GHSA-qm3c-x5c3-g2g4: There is an improper integrity checking vulnerability on some huawei products2022-05-24
CVEList
CVE-2020-1879: There is an improper integrity checking vulnerability on some huawei products2020-03-20
CVE-2020-1879 (LOW CVSS 3.9) | There is an improper integrity chec | cvebase.io