CVE-2020-9200: Input Validation
There has a CSV injection vulnerability in iManager NetEco 6000 versions V600R021C00. An attacker with common privilege may exploit this vulnerability through some operations to inject the CSV files. Due to insufficient input validation of some parameters, the attacker can exploit this vulnerability to inject CSV files to the target device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-9200?
CVE-2020-9200 is considered a moderate severity vulnerability due to its potential for exploitation through CSV injection.
How do I fix CVE-2020-9200?
To fix CVE-2020-9200, update to an unaffected version of Huawei iManager NetEco 6000 firmware.
Can CVE-2020-9200 be exploited remotely?
Yes, CVE-2020-9200 can be exploited remotely by an attacker with common privileges.
What products are affected by CVE-2020-9200?
CVE-2020-9200 affects Huawei iManager NetEco 6000 versions V600R021C00.
What are the potential impacts of CVE-2020-9200?
The potential impacts of CVE-2020-9200 include unauthorized data manipulation through maliciously crafted CSV files.