CVE-2020-9122: Input Validation
Some Huawei products have an insufficient input verification vulnerability. Attackers can exploit this vulnerability in the LAN to cause service abnormal on affected devices.Affected product versions include:HiRouter-CD30-10 version 10.0.2.5;HiRouter-CT31-10 version 10.0.2.20;WS5200-12 version 10.0.1.9;WS5281-10 version 10.0.5.10;WS5800-10 version 10.0.3.25;WS7100-10 version 10.0.5.21;WS7200-10 version 10.0.5.21.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9122?
CVE-2020-9122 is a vulnerability found in some Huawei products that allows attackers to cause service abnormality through an insufficient input verification vulnerability in the LAN.
Which Huawei products are affected by CVE-2020-9122?
The affected products include Huawei HiRouter-CD30-10 version 10.0.2.5, Huawei HiRouter-CT31-10 version 10.0.2.20, and Huawei WS5200-12 version 10.0.1.9 to version 10.0.5.6.
How severe is CVE-2020-9122?
CVE-2020-9122 has a severity score of 6.5, categorized as medium severity.
How can attackers exploit CVE-2020-9122?
Attackers can exploit CVE-2020-9122 by taking advantage of the insufficient input verification in the LAN of affected Huawei products to disrupt the normal operation of the services.
Where can I find more information about CVE-2020-9122?
You can find more information about CVE-2020-9122 on Huawei's official website in their security advisory: https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200930-01-verification-en