← Back to CVE List
Vulnerability Intelligence Report

CVE-2020-9213

There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling of the packets, an attacker may craft many specific packets. Successful exploit may cause some services to be abnormal. Affected products include some versions of NGFW Module, NIP6300, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500, Secospace USG6600 and SG9500.

No Active Exploit Signals
CVSS Base Score
7.5
HIGH
EPSS Probability:0.73%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
huawei ngfw_module_firmware v500r005c00
huawei ngfw_module all
huawei nip6300_firmware v500r001c30, v500r001c60, v500r005c00
huawei nip6300 all
huawei nip6600_firmware v500r001c30, v500r001c60, v500r005c00
huawei nip6600 all
huawei nip6800_firmware v500r001c60, v500r005c00
huawei nip6800 all
huawei secospace_usg6300_firmware v500r001c30, v500r001c60, v500r005c00
huawei secospace_usg6300 all
huawei secospace_usg6500_firmware v500r001c30, v500r001c60, v500r005c00
huawei secospace_usg6500 all
huawei secospace_usg6600_firmware v500r001c30, v500r001c60, v500r005c00
huawei secospace_usg6600 all
huawei usg9500_firmware v500r001c30, v500r001c60, v500r005c00
huawei usg9500 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.727%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityHuawei Technologies · Vendor · China
Reserved2020-02-18T00:00:00
Published2021-03-22T17:39:26
Last Updated2024-08-04T10:19:20

LINK COPIED TO CLIPBOARD