Vulnerability Description
FusionAccess version 6.5.1 has an improper authorization vulnerability. A command is authorized with incorrect privilege. Attackers with other privilege can execute the command to exploit this vulnerability. This may compromise normal service of the affected product.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Fusionaccess | 6.5.1 |
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200930-01-fa-enVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200930-01-fa-enVendor Advisory
FAQ
What is CVE-2020-9090?
CVE-2020-9090 is a vulnerability with a CVSS score of 7.8 (HIGH). FusionAccess version 6.5.1 has an improper authorization vulnerability. A command is authorized with incorrect privilege. Attackers with other privilege can execute the command to exploit this vulnera...
How severe is CVE-2020-9090?
CVE-2020-9090 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-9090?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Fusionaccess.