CVE-2020-1855

EUVD-2020-12681
Huawei HEGE-570 version 1.0.1.22(SP3); and HEGE-560, OSCA-550, OSCA-550A, OSCA-550AX, and OSCA-550X version 1.0.1.21(SP3) have an insufficient verification vulnerability. An attacker can access the device physically and exploit this vulnerability to tamper with device information. Successful exploit may cause service abnormal.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.1 MEDIUM
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
Affected Products (NVD)
VendorProductVersion
huaweihege-560_firmware
1.0.1.21\(sp3\)
huaweiosca-550_firmware
1.0.1.21\(sp3\)
huaweiosca-550a_firmware
1.0.1.21\(sp3\)
huaweiosca-550ax_firmware
1.0.1.21\(sp3\)
huaweiosca-550x_firmware
1.0.1.21\(sp3\)
huaweihege-570_firmware
1.0.1.22\(sp3\)
𝑥
= Vulnerable software versions