CVE-2020-9213

Severity
7.5HIGH
EPSS
0.2%
top 60.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 22
Latest updateMay 24

Description

There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling of the packets, an attacker may craft many specific packets. Successful exploit may cause some services to be abnormal. Affected products include some versions of NGFW Module, NIP6300, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500, Secospace USG6600 and SG9500.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages8 packages

NVDhuawei/secospace_usg6300_firmwarev500r001c30, v500r001c60, v500r005c00+2
NVDhuawei/secospace_usg6500_firmwarev500r001c30, v500r001c60, v500r005c00+2
NVDhuawei/secospace_usg6600_firmwarev500r001c30, v500r001c60, v500r005c00+2
NVDhuawei/nip6300_firmwarev500r001c30, v500r001c60, v500r005c00+2

🔴Vulnerability Details

2
GHSA
GHSA-qq36-8wwj-qj84: There is a denial of service vulnerability in some huawei products2022-05-24
CVEList
CVE-2020-9213: There is a denial of service vulnerability in some huawei products2021-03-22