Vulnerability Description
Huawei products IPS Module; NGFW Module; NIP6300; NIP6600; NIP6800; Secospace USG6300; Secospace USG6500; Secospace USG6600; USG9500 with versions of V500R001C00; V500R001C20; V500R001C30; V500R001C50; V500R001C60; V500R001C80; V500R005C00; V500R005C10; V500R005C20; V500R002C00; V500R002C10; V500R002C20; V500R002C30 have an improper authentication vulnerability. Attackers need to perform some operations to exploit the vulnerability. Successful exploit may obtain certain permissions on the device.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Ips Module Firmware | v500r001c00 |
| Huawei | Ips Module | - |
| Huawei | Ngfw Module Firmware | v500r001c00 |
| Huawei | Ngfw Module | - |
| Huawei | Nip6300 Firmware | v500r001c00 |
| Huawei | Nip6300 | - |
| Huawei | Nip6600 Firmware | v500r001c00 |
| Huawei | Nip6600 | - |
| Huawei | Nip6800 Firmware | v500r001c60 |
| Huawei | Nip6800 | - |
| Huawei | Secospace Usg6300 Firmware | v500r001c00 |
| Huawei | Secospace Usg6300 | - |
| Huawei | Secospace Usg6500 Firmware | v500r001c00 |
| Huawei | Secospace Usg6500 | - |
| Huawei | Secospace Usg6600 Firmware | v500r001c00 |
| Huawei | Secospace Usg6600 | - |
| Huawei | Usg9500 Firmware | v500r001c00 |
| Huawei | Usg9500 | - |
Related Weaknesses (CWE)
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200506-02-authenVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200506-02-authenVendor Advisory
FAQ
What is CVE-2020-9099?
CVE-2020-9099 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Huawei products IPS Module; NGFW Module; NIP6300; NIP6600; NIP6800; Secospace USG6300; Secospace USG6500; Secospace USG6600; USG9500 with versions of V500R001C00; V500R001C20; V500R001C30; V500R001C50...
How severe is CVE-2020-9099?
CVE-2020-9099 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-9099?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Ips Module Firmware, Huawei Ips Module, Huawei Ngfw Module Firmware, Huawei Ngfw Module, Huawei Nip6300 Firmware.