Huawei
Huawei Secospace Usg6600 Firmware: vulnerabilidades y CVE
Huawei Secospace Usg6600 Firmware tiene 88 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE88
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2020-1824 | Media (5.3) | 0.32% | — | 28 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2020-1823 | Media (5.3) | 0.25% | — | 28 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2020-1822 | Media (5.3) | 0.25% | — | 28 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2020-1821 | Media (5.3) | 0.25% | — | 28 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2020-1820 | Media (5.3) | 0.25% | — | 28 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2020-1819 | Media (5.3) | 0.25% | — | 27 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2020-1818 | Media (5.3) | 0.25% | — | 27 dic 2024 | There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protocol of some Huawei products. The specific decoding function may occur out-of-bounds read… |
| CVE-2021-22356 | Media (5.9) | 0.42% | — | 23 nov 2021 | There is a weak secure algorithm vulnerability in Huawei products. A weak secure algorithm is used in a module. Attackers can exploit this vulnerability by capturing and analyzing the messages between devices to obtain… |
| CVE-2021-22341 | Media (4.9) | 0.59% | — | 29 jun 2021 | There is a memory leak vulnerability in Huawei products. A resource management weakness exists in a module. Attackers with high privilege can exploit this vulnerability by performing some operations. This can lead to… |
| CVE-2021-22411 | Media (6.5) | 0.58% | — | 27 may 2021 | There is an out-of-bounds write vulnerability in some Huawei products. The code of a module have a bad judgment logic. Attackers can exploit this vulnerability by performing multiple abnormal activities to trigger the… |
| CVE-2021-22312 | Media (6.5) | 0.83% | — | 8 abr 2021 | There is a memory leak vulnerability in some Huawei products. An authenticated remote attacker may exploit this vulnerability by sending specific message to the affected product. Due to not release the allocated memory… |
| CVE-2021-22321 | Media (5.3) | 0.71% | — | 22 mar 2021 | There is a use-after-free vulnerability in a Huawei product. A module cannot deal with specific operations in special scenarios. Attackers can exploit this vulnerability by performing malicious operations. This can… |
| CVE-2021-22320 | Alta (7.5) | 0.73% | — | 22 mar 2021 | There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This… |
| CVE-2021-22310 | Media (4.4) | 0.19% | — | 22 mar 2021 | There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device.… |
| CVE-2020-9213 | Alta (7.5) | 0.73% | — | 22 mar 2021 | There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling of the packets, an attacker may craft many specific packets. Successful exploit may cause some… |
| CVE-2020-1866 | Media (6.5) | 0.35% | — | 13 ene 2021 | There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended buffer when parsing certain crafted DHCP messages. Successful exploit could cause certain service… |
| CVE-2020-9201 | Media (6.5) | 0.32% | — | 24 dic 2020 | There is an out-of-bounds read vulnerability in some versions of NIP6800, Secospace USG6600 and USG9500. The software reads data past the end of the intended buffer when parsing DHCP messages including crafted… |
| CVE-2020-9127 | Media (6.7) | 0.39% | — | 13 nov 2020 | Some Huawei products have a command injection vulnerability. Due to insufficient input validation, an attacker with high privilege may inject some malicious codes in some files of the affected products. Successful… |
| CVE-2020-1847 | Alta (7.5) | 0.74% | — | 13 nov 2020 | There is a denial of service vulnerability in some Huawei products. There is no protection against the attack scenario of specific protocol. A remote, unauthorized attackers can construct attack scenarios, which leads… |
| CVE-2020-9101 | Media (6.5) | 0.33% | — | 18 jul 2020 | There is an out-of-bounds write vulnerability in some products. An unauthenticated attacker crafts malformed packets with specific parameter and sends the packets to the affected products. Due to insufficient validation… |
| CVE-2019-19417 | Alta (7.5) | 0.88% | — | 8 jul 2020 | The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to… |
| CVE-2019-19416 | Alta (7.5) | 0.88% | — | 8 jul 2020 | The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to… |
| CVE-2019-19415 | Alta (7.5) | 0.88% | — | 8 jul 2020 | The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by sending the specially crafted messages to the affected device. Due to… |
| CVE-2020-9075 | Media (6.5) | 0.61% | — | 15 jun 2020 | Huawei products Secospace USG6300;USG6300E with versions of V500R001C30,V500R001C50,V500R001C60,V500R001C80,V500R005C00,V500R005C10;V600R006C00 have a vulnerability of insufficient input verification. An attacker with… |
| CVE-2020-9099 | Crítica (9.8) | 0.88% | — | 8 jun 2020 | Huawei products IPS Module; NGFW Module; NIP6300; NIP6600; NIP6800; Secospace USG6300; Secospace USG6500; Secospace USG6600; USG9500 with versions of V500R001C00; V500R001C20; V500R001C30; V500R001C50; V500R001C60;… |
| CVE-2020-1883 | Media (4.9) | 0.80% | — | 5 jun 2020 | Huawei products NIP6800;Secospace USG6600;USG9500 have a memory leak vulnerability. An attacker with high privileges exploits this vulnerability by continuously performing specific operations. Successful exploitation of… |
| CVE-2020-1881 | Alta (7.5) | 0.79% | — | 28 feb 2020 | NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have have a resource management error vulnerability. An attacker needs to perform specific operations to… |
| CVE-2020-1877 | Media (4.4) | 0.20% | — | 28 feb 2020 | NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when administrator log in… |
| CVE-2020-1876 | Alta (7.5) | 0.76% | — | 28 feb 2020 | NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-bounds write vulnerability. An unauthenticated attacker crafts malformed packets with specific… |
| CVE-2020-1875 | Media (5.5) | 0.20% | — | 28 feb 2020 | NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when an abnormal… |