CVE-2020-9207: High severity huawei cloudengine 12800 vulnerability
There is an improper authentication vulnerability in some verisons of Huawei CloudEngine product. A module does not verify the input file properly. Attackers can exploit this vulnerability by crafting malicious files to bypass current verification mechanism. This can compromise normal service.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9207?
CVE-2020-9207 is an improper authentication vulnerability in certain versions of Huawei CloudEngine products.
How can attackers exploit CVE-2020-9207?
Attackers can exploit CVE-2020-9207 by crafting malicious files to bypass the current verification mechanism.
Which Huawei CloudEngine products are affected by CVE-2020-9207?
Certain versions of Huawei CloudEngine 12800, 5800, 6800, and 7800 are affected by CVE-2020-9207.
What is the severity of CVE-2020-9207?
The severity of CVE-2020-9207 is high with a CVSS score of 7.8.
How can I fix CVE-2020-9207?
To fix CVE-2020-9207, it is recommended to apply the latest patches and updates provided by Huawei.