CVE-2020-9122

Severity
6.5MEDIUM
EPSS
0.1%
top 84.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 12
Latest updateMay 24

Description

Some Huawei products have an insufficient input verification vulnerability. Attackers can exploit this vulnerability in the LAN to cause service abnormal on affected devices.Affected product versions include:HiRouter-CD30-10 version 10.0.2.5;HiRouter-CT31-10 version 10.0.2.20;WS5200-12 version 10.0.1.9;WS5281-10 version 10.0.5.10;WS5800-10 version 10.0.3.25;WS7100-10 version 10.0.5.21;WS7200-10 version 10.0.5.21.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages7 packages

NVDhuawei/hirouter-cd30-10_firmware10.0.2.510.0.5.7
NVDhuawei/hirouter-ct31-10_firmware10.0.2.2010.0.2.37
NVDhuawei/ws5281-10_firmware10.0.5.1010.0.5.32
NVDhuawei/ws5800-10_firmware10.0.3.2510.0.3.33
NVDhuawei/ws7100-10_firmware10.0.5.2110.0.5.37

🔴Vulnerability Details

2
GHSA
GHSA-x5qr-84mx-9wx2: Some Huawei products have an insufficient input verification vulnerability2022-05-24
CVEList
CVE-2020-9122: Some Huawei products have an insufficient input verification vulnerability2020-10-12
CVE-2020-9122 (MEDIUM CVSS 6.5) | Some Huawei products have an insuff | cvebase.io