CVE-2020-9094: High severity huawei cloudengine 12800 vulnerability
Published Dec 29, 2020
·Updated
There is an out of bound read vulnerability in some verisons of Huawei CloudEngine product. A module does not deal with specific message properly. Attackers can exploit this vulnerability by sending malicious packet. This can lead to denial of service.
Affected Software
9 affected components
Huawei Cloudengine 12800 Firmware=v200r019c00spc800
Huawei CloudEngine 12800
Huawei Cloudengine 5800 Firmware=v200r019c00spc800
Huawei CloudEngine 5800
Huawei Cloudengine 6800 Firmware=v200r005c20spc800
Huawei Cloudengine 6800 Firmware=v200r019c00spc800
Huawei CloudEngine 6800
Huawei Cloudengine 7800 Firmware=v200r019c00spc800
Huawei CloudEngine 7800
Event History
Dec 29, 2020
CVE Published
via MITRE·05:28 PM
Data Sourced
via MITRE·05:28 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-9094?
CVE-2020-9094 is an out of bound read vulnerability in some versions of Huawei CloudEngine product.
2
What can attackers do with CVE-2020-9094?
Attackers can exploit this vulnerability by sending a malicious packet, which can lead to a denial of service.
3
Which versions of Huawei CloudEngine are affected by CVE-2020-9094?
Huawei CloudEngine versions v200r019c00spc800, v200r005c20spc800, and v200r019c00spc800 are affected by CVE-2020-9094.
4
What is the severity of CVE-2020-9094?
CVE-2020-9094 has a severity rating of 7.5, which is considered high.
5
How can I fix CVE-2020-9094?
To fix CVE-2020-9094, it is recommended to apply the necessary security patches provided by Huawei.