CVE Vulnerabilities

CVE-2020-9212

Published: Mar 22, 2021 | Modified: Mar 26, 2021
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

There is a vulnerability in some version of USG9500 that the device improperly handles the information when a user logs in to device. The attacker can exploit the vulnerability to perform some operation and can get information and cause information leak.

Affected Software

Name Vendor Start Version End Version
Usg9500_firmware Huawei v500r005c00spc100 (including) v500r005c00spc100 (including)
Usg9500_firmware Huawei v500r005c00spc200 (including) v500r005c00spc200 (including)
Usg9500_firmware Huawei v500r005c20spc300 (including) v500r005c20spc300 (including)
Usg9500_firmware Huawei v500r005c20spc500 (including) v500r005c20spc500 (including)
Usg9500_firmware Huawei v500r005c20spc600 (including) v500r005c20spc600 (including)

References