CVE-2019-5254
—CVSS 3.1
8.6 high
EPSS
<1%p53
Published
()
Modified
Description
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secospace USG6300;Secospace USG6500;Secospace USG6600;USG6000V;eSpace U1981) have an out-of-bounds read vulnerability. An attacker who logs in to the board may send crafted messages from the internal network port or tamper with inter-process message packets to exploit this vulnerability. Due to insufficient validation of the message, successful exploit may cause the affected board to be abnormal.
- Vendors
- huawei
- Products
- ap2000 firmware, ips firmware, ngfw firmware, nip6300 firmware, nip6600 firmware, nip6800 firmware, s5700 firmware, svn5600 firmware, svn5800 firmware, svn5800-c firmware, semg9811 firmware, secospace antiddos8000 firmware
- Weakness
- CWE-125
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.