CVE-2020-9100

CWE-427CWE-4263 documents3 sources
Severity
7.8HIGH
EPSS
0.1%
top 79.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 6
Latest updateMay 24

Description

Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

NVDhuawei/hisuite< 10.1.0.500
CVEListV5hisuiteEarlier than HiSuite 10.1.0.500

🔴Vulnerability Details

2
GHSA
GHSA-rpmr-24q5-prwr: Earlier than HiSuite 102022-05-24
CVEList
CVE-2020-9100: Earlier than HiSuite 102020-07-06
CVE-2020-9100 (HIGH CVSS 7.8) | Earlier than HiSuite 10.1.0.500 hav | cvebase.io