CVE-2020-9114
Summary
| CVE | CVE-2020-9114 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-12-01 01:15:00 UTC |
| Updated | 2020-12-02 20:53:00 UTC |
| Description | FusionCompute versions 6.3.0, 6.3.1, 6.5.0, 6.5.1 and 8.0.0 have a privilege escalation vulnerability. Due to improper privilege management, an attacker with common privilege may access some specific files and get the administrator privilege in the affected products. Successful exploit will cause privilege escalation. |
Risk And Classification
Problem Types: CWE-269
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Huawei | Fusioncompute | 6.3.0 | All | All | All |
| Application | Huawei | Fusioncompute | 6.3.1 | All | All | All |
| Application | Huawei | Fusioncompute | 6.5.0 | All | All | All |
| Application | Huawei | Fusioncompute | 6.5.1 | All | All | All |
| Application | Huawei | Fusioncompute | 8.0.0 | All | All | All |
| Application | Huawei | Fusioncompute | 6.3.0 | All | All | All |
| Application | Huawei | Fusioncompute | 6.3.1 | All | All | All |
| Application | Huawei | Fusioncompute | 6.5.0 | All | All | All |
| Application | Huawei | Fusioncompute | 6.5.1 | All | All | All |
| Application | Huawei | Fusioncompute | 8.0.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Privilege Escalation Vulnerability in FusionCompute Product | MISC | www.huawei.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.