There is a information leak vulnerability in some Huawei products, and it could allow a local attacker to get information. The vulnerability is due to the improper management of the username. An attacker with the ability to access the device and cause the username information leak. Affected product versions include: CloudEngine 12800 versions V200R002C50SPC800, V200R003C00SPC810, V200R005C00SPC800, V200R005C10SPC800, V200R019C00SPC800; CloudEngine 5800 versions V200R002C50SPC800, V200R003C00SPC810, V200R005C00SPC800, V200R005C10SPC800, V200R019C00SPC800; CloudEngine 6800 versions V200R002C50SPC800, V200R003C00SPC810, V200R005C00SPC800, V200R005C10SPC800, V200R005C20SPC800, V200R019C00SPC800; CloudEngine 7800 versions V200R002C50SPC800, V200R003C00SPC810, V200R005C00SPC800, V200R005C10SPC800, V200R019C00SPC800
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-03-informationleak-en | Vendor Advisory |
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-03-informationleak-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
History
21 Nov 2024, 05:40
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-03-informationleak-en - Vendor Advisory |
Information
Published : 2020-07-17 23:15
Updated : 2024-11-21 05:40
NVD link : CVE-2020-9102
Mitre link : CVE-2020-9102
CVE.ORG link : CVE-2020-9102
JSON object : View
Products Affected
huawei
- cloudengine_7800
- cloudengine_6800_firmware
- cloudengine_7800_firmware
- cloudengine_6800
- cloudengine_12800
- cloudengine_5800_firmware
- cloudengine_5800
- cloudengine_12800_firmware
CWE