Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2020-1877

NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when administrator log in to the device and performs some operations. Successful exploit could cause certain process reboot.

  • Published: Feb 28, 2020
  • Updated: Apr 13, 2023
  • CVE: CVE-2020-1877
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 4.4
  • AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

CVSS v2:

  • Severity: Low
  • Score: 4.9
  • AV:L/AC:L/Au:N/C:N/I:N/A:C

CWEs:

Software From Fixed in
huawei / nip6800_firmware 500r001c30 500r001c30.x
huawei / nip6800_firmware 500r001c60spc500 500r001c60spc500.x
huawei / nip6800_firmware 500r005c00 500r005c00.x
huawei / secospace_usg6600_firmware 500r001c30spc200 500r001c30spc200.x
huawei / secospace_usg6600_firmware 500r001c30spc600 500r001c30spc600.x
huawei / secospace_usg6600_firmware 500r001c60spc500 500r001c60spc500.x
huawei / secospace_usg6600_firmware 500r005c00 500r005c00.x
huawei / usg9500_firmware 500r001c30spc200 500r001c30spc200.x
huawei / usg9500_firmware 500r001c30spc600 500r001c30spc600.x
huawei / usg9500_firmware 500r001c60spc500 500r001c60spc500.x
huawei / usg9500_firmware 500r005c00 500r005c00.x