PT-2020-20484 · Huawei · Fusionaccess
Published
2020-10-12
·
Updated
2021-07-21
·
CVE-2020-9090
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
FusionAccess version 6.5.1
Description
The issue is related to improper authorization, where a command is authorized with incorrect privilege. This allows attackers with other privileges to execute the command, potentially compromising the normal service of the affected product.
Recommendations
For FusionAccess version 6.5.1, update to a version that includes the fix for the improper authorization issue to prevent exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Fusionaccess