CVE-2020-1842
Summary
| CVE | CVE-2020-1842 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-02-18 04:15:00 UTC |
| Updated | 2020-02-20 15:00:00 UTC |
| Description | Huawei HEGE-560 version 1.0.1.20(SP2); OSCA-550 and OSCA-550A version 1.0.0.71(SP1); and OSCA-550AX and OSCA-550X version 1.0.0.71(SP2) have an insufficient authentication vulnerability. An attacker can access the device physically and perform specific operations to exploit this vulnerability. Successful exploitation may cause the attacker obtain high privilege. |
Risk And Classification
Problem Types: CWE-287
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Huawei | Hege-560 | - | All | All | All |
| Hardware | Huawei | Hege-560 | - | All | All | All |
| Operating System | Huawei | Hege-560 Firmware | 1.0.1.20\(sp2\) | All | All | All |
| Operating System | Huawei | Hege-560 Firmware | 1.0.1.20\(sp2\) | All | All | All |
| Hardware | Huawei | Osca-550 | - | All | All | All |
| Hardware | Huawei | Osca-550 | - | All | All | All |
| Hardware | Huawei | Osca-550a | - | All | All | All |
| Hardware | Huawei | Osca-550a | - | All | All | All |
| Hardware | Huawei | Osca-550ax | - | All | All | All |
| Hardware | Huawei | Osca-550ax | - | All | All | All |
| Operating System | Huawei | Osca-550ax Firmware | 1.0.0.71\(sp2\) | All | All | All |
| Operating System | Huawei | Osca-550ax Firmware | 1.0.0.71\(sp2\) | All | All | All |
| Operating System | Huawei | Osca-550a Firmware | 1.0.0.71\(sp1\) | All | All | All |
| Operating System | Huawei | Osca-550a Firmware | 1.0.0.71\(sp1\) | All | All | All |
| Hardware | Huawei | Osca-550x | - | All | All | All |
| Hardware | Huawei | Osca-550x | - | All | All | All |
| Operating System | Huawei | Osca-550x Firmware | 1.0.0.71\(sp2\) | All | All | All |
| Operating System | Huawei | Osca-550x Firmware | 1.0.0.71\(sp2\) | All | All | All |
| Operating System | Huawei | Osca-550 Firmware | 1.0.0.71\(sp1\) | All | All | All |
| Operating System | Huawei | Osca-550 Firmware | 1.0.0.71\(sp1\) | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Insufficient Authentication Vulnerability in Some Huawei products | CONFIRM | www.huawei.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.