Vulnerability Description
Huawei USG9560/9520/9580 before V300R001C01SPC300 allows remote attackers to cause a memory leak or denial of service (memory exhaustion, reboot and MPU switchover) via a crafted website.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Usg9560 Firmware | v300r001c00 |
| Huawei | Usg9560 | - |
| Huawei | Usg9520 Firmware | v300r001c00 |
| Huawei | Usg9520 | - |
| Huawei | Usg9580 Firmware | v300r001c00 |
| Huawei | Usg9580 | - |
Related Weaknesses (CWE)
References
- http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/Vendor Advisory
- http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/Vendor Advisory
FAQ
What is CVE-2014-9697?
CVE-2014-9697 is a vulnerability with a CVSS score of 7.5 (HIGH). Huawei USG9560/9520/9580 before V300R001C01SPC300 allows remote attackers to cause a memory leak or denial of service (memory exhaustion, reboot and MPU switchover) via a crafted website.
How severe is CVE-2014-9697?
CVE-2014-9697 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-9697?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Usg9560 Firmware, Huawei Usg9560, Huawei Usg9520 Firmware, Huawei Usg9520, Huawei Usg9580 Firmware.