CVE-2020-9128Inadequate Encryption Strength in Huawei Fusioncompute

Severity
4.4MEDIUMNVD
EPSS
0.0%
top 99.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 12
Latest updateMay 24

Description

FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can exploit this vulnerability to cause information leak.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 0.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5huawei/fusioncompute8.0.0

🔴Vulnerability Details

2
GHSA
GHSA-jrvj-xjqq-wvhc: FusionCompute versions 82022-05-24
CVEList
CVE-2020-9128: FusionCompute versions 82020-11-12
CVE-2020-9128 — Inadequate Encryption Strength | cvebase