CVE-2020-1866: Medium severity huawei nip6800 firmware vulnerability
There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended buffer when parsing certain crafted DHCP messages. Successful exploit could cause certain service abnormal. Affected product versions include:NIP6800 versions V500R001C30,V500R001C60SPC500,V500R005C00;S12700 versions V200R008C00;S2700 versions V200R008C00;S5700 versions V200R008C00;S6700 versions V200R008C00;S7700 versions V200R008C00;S9700 versions V200R008C00;Secospace USG6600 versions V500R001C30SPC200,V500R001C30SPC600,V500R001C60SPC500,V500R005C00;USG9500 versions V500R001C30SPC300,V500R001C30SPC600,V500R001C60SPC500,V500R005C00.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this out-of-bounds read vulnerability?
The vulnerability ID is CVE-2020-1866.
What is the severity of CVE-2020-1866?
The severity of CVE-2020-1866 is medium (6.5).
Which products are affected by CVE-2020-1866?
The affected products include Huawei NIP6800 Firmware versions V500R001C30, V500R001C60SPC500, and V500R005C00.
What is the impact of exploiting CVE-2020-1866?
Successful exploitation of CVE-2020-1866 could cause certain service abnormalities.
Where can I find more information about CVE-2020-1866?
More information about CVE-2020-1866 can be found at the following link: [Huawei Security Advisory](https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200122-09-eudemon-en).