Vulnerabilities > Huawei > Usg9500 Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-11-13 CVE-2020-9127 Command Injection vulnerability in Huawei products
Some Huawei products have a command injection vulnerability.
local
low complexity
huawei CWE-77
6.7
2020-07-18 CVE-2020-9101 Out-of-bounds Write vulnerability in Huawei products
There is an out-of-bounds write vulnerability in some products.
low complexity
huawei CWE-787
6.5
2020-06-05 CVE-2020-1883 Memory Leak vulnerability in Huawei products
Huawei products NIP6800;Secospace USG6600;USG9500 have a memory leak vulnerability.
network
low complexity
huawei CWE-401
4.9
2020-02-28 CVE-2020-1877 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
4.4
2020-02-28 CVE-2020-1875 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
5.5
2020-02-28 CVE-2020-1874 Access of Uninitialized Pointer vulnerability in Huawei products
NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have a invalid pointer access vulnerability.
local
low complexity
huawei CWE-824
5.5
2020-02-18 CVE-2020-1814 Race Condition vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a Dangling pointer dereference vulnerability.
network
high complexity
huawei CWE-362
5.3
2020-02-18 CVE-2020-1830 Out-of-bounds Read vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a vulnerability that a memory management error exists when IPSec Module handing a specific message.
network
low complexity
huawei CWE-125
5.3
2020-02-17 CVE-2020-1857 Unspecified vulnerability in Huawei products
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; and Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00SPC100 have an information leakage vulnerability.
local
low complexity
huawei
5.5
2019-12-26 CVE-2019-5272 Improper Validation of Integrity Check Value vulnerability in Huawei Usg9500 Firmware V500R001C30/V500R001C60
USG9500 with versions of V500R001C30;V500R001C60 have a missing integrity checking vulnerability.
network
low complexity
huawei CWE-354
4.9