Vulnerabilities > Huawei > Nip6800 Firmware > v500r005c00

DATE CVE VULNERABILITY TITLE RISK
2020-06-08 CVE-2020-9099 Improper Authentication vulnerability in Huawei products
Huawei products IPS Module; NGFW Module; NIP6300; NIP6600; NIP6800; Secospace USG6300; Secospace USG6500; Secospace USG6600; USG9500 with versions of V500R001C00; V500R001C20; V500R001C30; V500R001C50; V500R001C60; V500R001C80; V500R005C00; V500R005C10; V500R005C20; V500R002C00; V500R002C10; V500R002C20; V500R002C30 have an improper authentication vulnerability.
network
low complexity
huawei CWE-287
critical
9.8
2020-02-28 CVE-2020-1877 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
4.4
2020-02-28 CVE-2020-1876 Out-of-bounds Write vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-bounds write vulnerability.
network
low complexity
huawei CWE-787
7.5
2020-02-28 CVE-2020-1860 Unspecified vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an access control bypass vulnerability.
network
low complexity
huawei
7.5
2020-02-18 CVE-2020-1814 Race Condition vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a Dangling pointer dereference vulnerability.
network
high complexity
huawei CWE-362
5.3
2020-02-18 CVE-2020-1830 Out-of-bounds Read vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a vulnerability that a memory management error exists when IPSec Module handing a specific message.
network
low complexity
huawei CWE-125
5.3
2020-02-18 CVE-2020-1816 Unspecified vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a Denial of Service (DoS) vulnerability.
network
low complexity
huawei
7.5
2020-02-18 CVE-2020-1815 Memory Leak vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a memory leak vulnerability.
network
low complexity
huawei CWE-401
7.5
2020-02-17 CVE-2020-1828 Out-of-bounds Read vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; and Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have an input validation vulnerability where the IPSec module does not validate a field in a specific message.
network
low complexity
huawei CWE-125
7.5
2019-12-13 CVE-2019-5258 Classic Buffer Overflow vulnerability in Huawei products
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secospace USG6300;Secospace USG6500;Secospace USG6600;USG6000V;eSpace U1981) have a buffer overflow vulnerability.
local
low complexity
huawei CWE-120
5.5