CVE-2020-1789

Huawei OSCA-550, OSCA-550A, OSCA-550AX, and OSCA-550X products with version 1.0.1.21(SP3) have an insufficient authentication vulnerability. The software does not require a strong credential when the user trying to do certain operations. Successful exploit could allow an attacker to pass the authentication and do certain operations by a weak credential.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:osca-550_firmware:1.0.1.21\(sp3\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:osca-550:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:huawei:osca-550a_firmware:1.0.1.21\(sp3\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:osca-550a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:huawei:osca-550ax_firmware:1.0.1.21\(sp3\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:osca-550ax:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:huawei:osca-550x_firmware:1.0.1.21\(sp3\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:osca-550x:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:11

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200121-01-osca-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200121-01-osca-en - Vendor Advisory

Information

Published : 2020-02-18 03:15

Updated : 2024-11-21 05:11


NVD link : CVE-2020-1789

Mitre link : CVE-2020-1789

CVE.ORG link : CVE-2020-1789


JSON object : View

Products Affected

huawei

  • osca-550_firmware
  • osca-550ax_firmware
  • osca-550x_firmware
  • osca-550a_firmware
  • osca-550x
  • osca-550ax
  • osca-550
  • osca-550a
CWE
CWE-287

Improper Authentication