CVE-2020-9127
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Some Huawei products have a command injection vulnerability. Due to insufficient input validation, an attacker with high privilege may inject some malicious codes in some files of the affected products. Successful exploit may cause command injection.Affected product versions include:NIP6300 versions V500R001C30,V500R001C60;NIP6600 versions V500R001C30,V500R001C60;Secospace USG6300 versions V500R001C30,V500R001C60;Secospace USG6500 versions V500R001C30,V500R001C60;Secospace USG6600 versions V500R001C30,V500R001C60;USG9500 versions V500R001C30,V500R001C60.
Algunos productos de Huawei presentan una vulnerabilidad de inyección de comandos. Debido a una comprobación insuficiente de la entrada, un atacante con privilegios elevados puede inyectar algunos códigos maliciosos en algunos archivos de los productos afectados. Una explotación con éxito puede causar una inyección de comandos. Las versiones del producto afectadas incluyen: NIP6300 versiones V500R001C30,V500R001C60; NIP6600 versiones V500R001C30,V500R001C60; Secospace USG6300 versiones V500R001C30,V500R001C60; Secospace USG6500 versiones V500R001C30,V500R001C60; Secospace USG6600 versiones V500R001C30,V500R001C60; USG9500 versiones V500R001C30,V500R001C60
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-02-18 CVE Reserved
- 2020-11-13 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
- CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201111-02-injection-en | 2021-07-21 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Nip6300 Firmware Search vendor "Huawei" for product "Nip6300 Firmware" | v500r001c30 Search vendor "Huawei" for product "Nip6300 Firmware" and version "v500r001c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Nip6300 Search vendor "Huawei" for product "Nip6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Nip6300 Firmware Search vendor "Huawei" for product "Nip6300 Firmware" | v500r001c60 Search vendor "Huawei" for product "Nip6300 Firmware" and version "v500r001c60" | - |
Affected
| in | Huawei Search vendor "Huawei" | Nip6300 Search vendor "Huawei" for product "Nip6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Nip6600 Firmware Search vendor "Huawei" for product "Nip6600 Firmware" | v500r001c30 Search vendor "Huawei" for product "Nip6600 Firmware" and version "v500r001c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Nip6600 Search vendor "Huawei" for product "Nip6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Nip6600 Firmware Search vendor "Huawei" for product "Nip6600 Firmware" | v500r001c60 Search vendor "Huawei" for product "Nip6600 Firmware" and version "v500r001c60" | - |
Affected
| in | Huawei Search vendor "Huawei" | Nip6600 Search vendor "Huawei" for product "Nip6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r001c30 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r001c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r001c60 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r001c60" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r001c30 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r001c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r001c60 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r001c60" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r001c30 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r001c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r001c60 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r001c60" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r001c30 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r001c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r001c60 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r001c60" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|