There is a buffer error vulnerability in some Huawei product. An unauthenticated attacker may send special UPNP message to the affected products. Due to insufficient input validation of some value, successful exploit may cause some service abnormal. (Vulnerability ID: HWPSIRT-2017-08234)
This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9086.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 14 Jan 2025 08:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Huawei
         Huawei b612 Huawei b612 Firmware  | 
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:h:huawei:b612:-:*:*:*:*:*:*:* cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c234:*:*:*:*:*:*:* cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d03sp00c287:*:*:*:*:*:*:* cpe:2.3:o:huawei:b612_firmware:b612s-25dtcpu-v100r001b192d05sp00c00:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Huawei
         Huawei b612 Huawei b612 Firmware  | 
Fri, 27 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Fri, 27 Dec 2024 09:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | There is a buffer error vulnerability in some Huawei product. An unauthenticated attacker may send special UPNP message to the affected products. Due to insufficient input validation of some value, successful exploit may cause some service abnormal. (Vulnerability ID: HWPSIRT-2017-08234) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9086. | |
| Weaknesses | CWE-124 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: huawei
Published: 2024-12-27T09:40:03.261Z
Updated: 2024-12-27T15:06:52.987Z
Reserved: 2020-02-18T00:00:00.000Z
Link: CVE-2020-9086
Updated: 2024-12-27T15:06:48.740Z
Status : Analyzed
Published: 2024-12-27T10:15:12.800
Modified: 2025-01-13T19:34:15.140
Link: CVE-2020-9086
No data.