Vulnerability Description
Huawei USG6000V with versions V500R001C20SPC300, V500R003C00SPC100, and V500R005C00SPC100 have an out-of-bounds read vulnerability. Due to a logical flaw in a JSON parsing routine, a remote, unauthenticated attacker could exploit this vulnerability to disrupt service in the affected products.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Usg6000V Firmware | v500r001c20spc300 |
| Huawei | Usg6000V | - |
Related Weaknesses (CWE)
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200311-01-bufferVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200311-01-bufferVendor Advisory
FAQ
What is CVE-2020-1863?
CVE-2020-1863 is a vulnerability with a CVSS score of 7.5 (HIGH). Huawei USG6000V with versions V500R001C20SPC300, V500R003C00SPC100, and V500R005C00SPC100 have an out-of-bounds read vulnerability. Due to a logical flaw in a JSON parsing routine, a remote, unauthent...
How severe is CVE-2020-1863?
CVE-2020-1863 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-1863?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Usg6000V Firmware, Huawei Usg6000V.