CVE-2020-9067 Information

Description

There is a buffer overflow vulnerability in some Huawei products. The vulnerability can be exploited by an attacker to perform remote code execution on the affected products when the affected product functions as an optical line terminal (OLT). Affected product versions include:SmartAX MA5600T versions V800R013C10 V800R015C00 V800R015C10 V800R017C00 V800R017C10 V800R018C00 V800R018C10; SmartAX MA5800 versions V100R017C00 V100R017C10 V100R018C00 V100R018C10 V100R019C10; SmartAX EA5800 versions V100R018C00 V100R018C10 V100R019C10.

CVSS Vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Reference

https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200401-01-overflow-en

Attack Complexity

LOW

Privileges Required

LOW

User Interaction Required

LOW

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

HIGH

Base Score

HIGH

Base Severity

8.0

Share on: