CVE-2020-9085

There is a NULL pointer dereference vulnerability in some Huawei products. An attacker may send specially crafted POST messages to the affected products. Due to insufficient validation of some parameter in the message, successful exploit may cause some process abnormal. (Vulnerability ID: HWPSIRT-2017-10105) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9085.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c234:*:*:*:*:*:*:*
cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c287:*:*:*:*:*:*:*
cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d05sp00c00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:b612:-:*:*:*:*:*:*:*

History

13 Jan 2025, 19:35

Type Values Removed Values Added
CWE CWE-476
CPE cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c287:*:*:*:*:*:*:*
cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c234:*:*:*:*:*:*:*
cpe:2.3:h:huawei:b612:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d05sp00c00:*:*:*:*:*:*:*
References () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200826-01-pointer_en - () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200826-01-pointer_en - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
First Time Huawei b612
Huawei b612 Firmware
Huawei

27 Dec 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-27 10:15

Updated : 2025-01-13 19:35


NVD link : CVE-2020-9085

Mitre link : CVE-2020-9085


JSON object : View

Products Affected

huawei

  • b612
  • b612_firmware
CWE
CWE-476

NULL Pointer Dereference