There is a NULL pointer dereference vulnerability in some Huawei products. An attacker may send specially crafted POST messages to the affected products. Due to insufficient validation of some parameter in the message, successful exploit may cause some process abnormal. (Vulnerability ID: HWPSIRT-2017-10105)
This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9085.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 14 Jan 2025 08:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Huawei
         Huawei b612 Huawei b612 Firmware  | 
|
| CPEs | cpe:2.3:h:huawei:b612:-:*:*:*:*:*:*:* cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c234:*:*:*:*:*:*:* cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c287:*:*:*:*:*:*:* cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d05sp00c00:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Huawei
         Huawei b612 Huawei b612 Firmware  | 
Fri, 27 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Fri, 27 Dec 2024 09:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | There is a NULL pointer dereference vulnerability in some Huawei products. An attacker may send specially crafted POST messages to the affected products. Due to insufficient validation of some parameter in the message, successful exploit may cause some process abnormal. (Vulnerability ID: HWPSIRT-2017-10105) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9085. | |
| Weaknesses | CWE-476 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: huawei
Published: 2024-12-27T09:37:46.838Z
Updated: 2024-12-27T16:06:19.998Z
Reserved: 2020-02-18T00:00:00.000Z
Link: CVE-2020-9085
Updated: 2024-12-27T16:06:16.545Z
Status : Analyzed
Published: 2024-12-27T10:15:12.217
Modified: 2025-01-13T19:35:55.387
Link: CVE-2020-9085
No data.