PT-2020-5641 · Huawei · Huawei Ar3200+1

Published

2020-04-22

·

Updated

2020-04-30

·

CVE-2020-9068

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Huawei AR3200 products with versions of V200R007C00SPC900, V200R007C00SPCa00, V200R007C00SPCb00, V200R007C00SPCc00, V200R009C00SPC500
Description The issue is related to improper authentication in Huawei AR3200 products. Attackers need to perform certain operations to exploit this issue. Successful exploitation may allow an attacker to obtain certain permissions on the device. The vulnerability can be exploited remotely, potentially allowing an attacker to elevate their privileges.
Recommendations For Huawei AR3200 products with versions of V200R007C00SPC900, V200R007C00SPCa00, V200R007C00SPCb00, V200R007C00SPCc00, V200R009C00SPC500, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-01341
CVE-2020-9068

Affected Products

Huawei Ar3200
Huawei Vrp