Vulnerabilities > CVE-2020-9085 - NULL Pointer Dereference vulnerability in Huawei B612 Firmware B612S25Dtcpuv100R001B192D03Sp00C234/B612S25Dtcpuv100R001B192D03Sp00C287/B612S25Dtcpuv100R001B192D05Sp00C00

047910
CVSS 5.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
LOW
network
low complexity
huawei
CWE-476

Summary

There is a NULL pointer dereference vulnerability in some Huawei products. An attacker may send specially crafted POST messages to the affected products. Due to insufficient validation of some parameter in the message, successful exploit may cause some process abnormal. (Vulnerability ID: HWPSIRT-2017-10105) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9085.

Common Weakness Enumeration (CWE)