Vulnerabilities > Huawei > Secospace Usg6600 Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-06-15 CVE-2020-9075 Improper Input Validation vulnerability in Huawei products
Huawei products Secospace USG6300;USG6300E with versions of V500R001C30,V500R001C50,V500R001C60,V500R001C80,V500R005C00,V500R005C10;V600R006C00 have a vulnerability of insufficient input verification.
network
low complexity
huawei CWE-20
6.5
2020-06-05 CVE-2020-1883 Memory Leak vulnerability in Huawei products
Huawei products NIP6800;Secospace USG6600;USG9500 have a memory leak vulnerability.
network
low complexity
huawei CWE-401
4.9
2020-02-28 CVE-2020-1877 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
4.4
2020-02-28 CVE-2020-1875 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
5.5
2020-02-28 CVE-2020-1874 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have a invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
5.5
2020-02-18 CVE-2020-1814 Race Condition vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a Dangling pointer dereference vulnerability.
network
high complexity
huawei CWE-362
5.3
2020-02-18 CVE-2020-1830 Out-of-bounds Read vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a vulnerability that a memory management error exists when IPSec Module handing a specific message.
network
low complexity
huawei CWE-125
5.3
2020-02-17 CVE-2020-1857 Unspecified vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; and Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00SPC100 have an information leakage vulnerability.
local
low complexity
huawei
5.5
2019-12-13 CVE-2019-5258 Classic Buffer Overflow vulnerability in Huawei products
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secospace USG6300;Secospace USG6500;Secospace USG6600;USG6000V;eSpace U1981) have a buffer overflow vulnerability.
local
low complexity
huawei CWE-120
5.5
2019-12-13 CVE-2019-5257 Classic Buffer Overflow vulnerability in Huawei products
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace) have a resource management vulnerability.
local
low complexity
huawei CWE-120
5.5