QID 43872

Date Published: 2021-10-19

QID 43872: Huawei Switch Improper license Management Vulnerability (Huawei-SA-20210407-01)

There has a license management vulnerability in some huawei products. An attacker with high privilege needs to perform specific operations to exploit the vulnerability on the affected device. Due to improper license management of the device, as a result, the license file can be applied and affect integrity of the device. (Vulnerability ID: HWPSIRT-2020-15477)

The vulnerability can be exploited to affect the integrity of the device.

  • CVSS V3 rated as Medium - 4.9 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20210407-01 for updates and patch information.

    CVEs related to QID 43872

    Software Advisories
    Advisory ID Software Component Link
    huawei-sa-20210407-01 URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20210407-01-resourcemanagement-en