CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS
Percentile
99.3%
Microsoft’s security update in July 2020 addresses the CVE-2020-1350 vulnerability. To exploit the vulnerability, an unauthenticated attacker could send specially crafted requests to a Windows DNS server. An attacker who successfully exploited the vulnerability could run arbitrary code remotely. (Vulnerability ID: HWPSIRT-2020-59863)
Huawei has released software updates to fix this vulnerability. This advisory is available at the following link:
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200716-01-dns-en
Vendor | Product | Version | CPE |
---|---|---|---|
huawei | agile_controller-campus_firmware | v100r002c00 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc100 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc100:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc101 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc101:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc102 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc102:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc103 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc103:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc105 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc105:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc106 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc106:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc107 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc107:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c00spc200 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c00spc200:*:*:*:*:*:*:* |
huawei | agile_controller-campus_firmware | v100r002c10 | cpe:2.3:o:huawei:agile_controller-campus_firmware:v100r002c10:*:*:*:*:*:*:* |
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS
Percentile
99.3%