CVE-2020-1861: Medium severity Huawei Cloudengine 12800 Firmware vulnerability
CloudEngine 12800 with versions of V200R001C00SPC600,V200R001C00SPC700,V200R002C01,V200R002C50SPC800,V200R002C50SPC800PWE,V200R003C00SPC810,V200R003C00SPC810PWE,V200R005C00SPC600,V200R005C00SPC800,V200R005C00SPC800PWE,V200R005C10,V200R005C10SPC300 have an information leakage vulnerability in some Huawei products. In some special cases, an authenticated attacker can exploit this vulnerability because the software processes data improperly. Successful exploitation may lead to information leakage.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-1861.
What is the severity level of CVE-2020-1861?
The severity level of CVE-2020-1861 is medium with a CVSS score of 4.4.
Which products are affected by CVE-2020-1861?
The CloudEngine 12800 with the following firmware versions: V200R001C00SPC600, V200R001C00SPC700, V200R002C01, V200R002C50SPC800, V200R002C50SPC800PWE, V200R003C00SPC810, V200R003C00SPC810PWE, V200R005C00SPC600, V200R005C00SPC800, V200R005C00SPC800PWE, V200R005C10, V200R005C10SPC300 are affected by CVE-2020-1861.
What is the vulnerability description of CVE-2020-1861?
CloudEngine 12800 with specific firmware versions have an information leakage vulnerability.
Is there a fix available for CVE-2020-1861?
Yes, Huawei has released a security advisory containing the fix for CVE-2020-1861. Please refer to the Huawei website for more information.