CVE Feed

    Dashboard / CVE / CVE-2020-9069

    CVE-2020-9069

    There is an information leakage vulnerability in some Huawei products. An unauthenticated, adjacent attacker could exploit this vulnerability to decrypt data. Successful exploitation may leak information randomly. Affected product versions include: Anne-AL00 Versions earlier than 9.1.0.331(C675E9R1P3T8); Berkeley-L09 Versions earlier than 10.0.1.1(C675R1); CD16-10 Versions earlier than 10.0.2.8; CD17-10 Versions earlier than 10.0.2.8; CD17-16 Versions earlier than 10.0.2.8; CD18-10 Versions earlier than 10.0.2.8; CD18-16 Versions earlier than 10.0.2.8; Columbia-TL00B Versions earlier than 9.0.0.187(C01E181R1P20T8); E6878-370 Versions earlier than 10.0.5.1(H610SP10C00); HUAWEI P30 lite Versions earlier than 10.0.0.185(C605E3R1P3), Versions earlier than 10.0.0.197(C432E8R2P7); HUAWEI nova 4e Versions earlier than 10.0.0.158(C00E64R1P9); Honor 10 Lite 9.0.1.113(C675E11R1P12); LelandP-L22A Versions earlier than 9.1.0.166(C675E5R1P4T8); Marie-AL00AX Versions earlier than 10.0.0.158(C00E64R1P9); Marie-AL00AY Versions earlier than 10.0.0.158(C00E64R1P9); Marie-AL00BX Versions earlier than 10.0.0.158(C00E64R1P9); Marie-L03BX Versions earlier than 10.0.0.188(C605E5R1P1); Marie-L21BX Versions earlier than 10.0.0.188(C432E4R4P1), Versions earlier than 10.0.0.188(C461E5R3P1); Marie-L22BX Versions earlier than 10.0.0.188(C636E3R3P1); Marie-L23BX Versions earlier than 10.0.0.188(C605E5R1P1); TC5200-16 Versions earlier than 10.0.2.8; WS5200-11 Versions earlier than 10.0.2.8; WS5200-12 Versions earlier than 10.0.2.23; WS5200-16 Versions earlier than 10.0.2.8; WS5200-17 Versions earlier than 10.0.2.23; WS5800-10 Versions earlier than 10.0.3.27; WS6500-10 Versions earlier than 10.0.2.8; WS6500-16 Versions earlier than 10.0.2.8

    Published:May 21, 2020
    Last Modified:Nov 21, 2024
    EPS:May 21, 2020
    EPSS Score:0.00044
    CVSS Score:6.5

    Affected Products

    Vendor
    Huawei
    Product
    Anne-al00
    Vendor
    Huawei
    Product
    Anne-al00 Firmware
    Vendor
    Huawei
    Product
    Berkeley-l09
    Vendor
    Huawei
    Product
    Berkeley-l09 Firmware
    Vendor
    Huawei
    Product
    Cd16-10
    Vendor
    Huawei
    Product
    Cd16-10 Firmware
    Vendor
    Huawei
    Product
    Cd17-10
    Vendor
    Huawei
    Product
    Cd17-10 Firmware
    Vendor
    Huawei
    Product
    Cd17-16
    Vendor
    Huawei
    Product
    Cd17-16 Firmware
    Vendor
    Huawei
    Product
    Cd18-10
    Vendor
    Huawei
    Product
    Cd18-10 Firmware
    Vendor
    Huawei
    Product
    Cd18-16
    Vendor
    Huawei
    Product
    Cd18-16 Firmware
    Vendor
    Huawei
    Product
    Columbia-tl00b
    Vendor
    Huawei
    Product
    Columbia-tl00b Firmware
    Vendor
    Huawei
    Product
    E6878-370
    Vendor
    Huawei
    Product
    E6878-370 Firmware
    Vendor
    Huawei
    Product
    Honor 10 Lite
    Vendor
    Huawei
    Product
    Honor 10 Lite Firmware
    Vendor
    Huawei
    Product
    Lelandp-l22a
    Vendor
    Huawei
    Product
    Lelandp-l22a Firmware
    Vendor
    Huawei
    Product
    Tc5200-16
    Vendor
    Huawei
    Product
    Tc5200-16 Firmware
    Vendor
    Huawei
    Product
    Ws5200-11
    Vendor
    Huawei
    Product
    Ws5200-11 Firmware
    Vendor
    Huawei
    Product
    Ws5200-16
    Vendor
    Huawei
    Product
    Ws5200-16 Firmware
    Vendor
    Huawei
    Product
    Ws5200-17
    Vendor
    Huawei
    Product
    Ws5200-17 Firmware
    Vendor
    Huawei
    Product
    Ws5800-10
    Vendor
    Huawei
    Product
    Ws5800-10 Firmware
    Vendor
    Huawei
    Product
    Ws6500-10
    Vendor
    Huawei
    Product
    Ws6500-10 Firmware
    Vendor
    Huawei
    Product
    Ws6500-16
    Vendor
    Huawei
    Product
    Ws6500-16 Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    No CWE recorded yet

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High