CVE-2020-1881

NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have have a resource management error vulnerability. An attacker needs to perform specific operations to trigger a function of the affected device. Due to improper resource management of the function, the vulnerability can be exploited to cause service abnormal on affected devices.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:nip6800_firmware:v500r001c30:*:*:*:*:*:*:*
cpe:2.3:h:huawei:nip6800:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r001c30spc200:*:*:*:*:*:*:*
cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r001c30spc600:*:*:*:*:*:*:*
cpe:2.3:h:huawei:secospace_usg6600:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:huawei:usg9500_firmware:v500r001c30spc200:*:*:*:*:*:*:*
cpe:2.3:o:huawei:usg9500_firmware:v500r001c30spc600:*:*:*:*:*:*:*
cpe:2.3:h:huawei:usg9500:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:huawei:oceanstor_5310_firmware:v500r007c60spc100:*:*:*:*:*:*:*
cpe:2.3:h:huawei:oceanstor_5310:5.0:*:*:*:*:*:*:*

History

21 Nov 2024, 05:11

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200429-01-invalidpointer-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200429-01-invalidpointer-en - Vendor Advisory
References () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200219-02-resource-en - Vendor Advisory () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200219-02-resource-en - Vendor Advisory

22 Apr 2022, 19:02

Type Values Removed Values Added
CPE cpe:2.3:o:huawei:oceanstor_5310_firmware:v500r007c60spc100:*:*:*:*:*:*:*
cpe:2.3:h:huawei:oceanstor_5310:5.0:*:*:*:*:*:*:*
References (CONFIRM) http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200429-01-invalidpointer-en - (CONFIRM) http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200429-01-invalidpointer-en - Vendor Advisory
CWE CWE-400 NVD-CWE-noinfo

Information

Published : 2020-02-28 19:15

Updated : 2024-11-21 05:11


NVD link : CVE-2020-1881

Mitre link : CVE-2020-1881

CVE.ORG link : CVE-2020-1881


JSON object : View

Products Affected

huawei

  • oceanstor_5310_firmware
  • secospace_usg6600
  • usg9500
  • usg9500_firmware
  • secospace_usg6600_firmware
  • oceanstor_5310
  • nip6800_firmware
  • nip6800