PT-2020-15119 · Huawei · Nip6300+6
Published
2020-11-11
·
Updated
2020-11-30
·
CVE-2020-1847
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
NIP6300 versions V500R001C30 through V500R001C60
NIP6600 versions V500R001C30 through V500R001C60
Secospace USG6300 versions V500R001C30 through V500R001C60
Secospace USG6500 versions V500R001C30 through V500R001C60
Secospace USG6600 versions V500R001C30 through V500R001C60
USG9500 versions V500R001C30 through V500R001C60
Description
There is a denial of service vulnerability in some Huawei products. The issue arises from the lack of protection against specific protocol attack scenarios, allowing remote, unauthorized attackers to construct attack scenarios that lead to denial of service.
Recommendations
For NIP6300 versions V500R001C30 through V500R001C60, update to a version that includes the fix for this issue.
For NIP6600 versions V500R001C30 through V500R001C60, update to a version that includes the fix for this issue.
For Secospace USG6300 versions V500R001C30 through V500R001C60, update to a version that includes the fix for this issue.
For Secospace USG6500 versions V500R001C30 through V500R001C60, update to a version that includes the fix for this issue.
For Secospace USG6600 versions V500R001C30 through V500R001C60, update to a version that includes the fix for this issue.
For USG9500 versions V500R001C30 through V500R001C60, update to a version that includes the fix for this issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Huawei Vrp
Nip6300
Nip6600
Secospace Usg6300
Secospace Usg6500
Secospace Usg6600
Usg9500