CVE-2019-5285
HIGHHuawei S Series Switches - Unauthenticated Denial of Service via Crafted Packet Handling
Title source: llmDescription
Some Huawei S series switches have a DoS vulnerability. An unauthenticated remote attacker can send crafted packets to the affected device to exploit this vulnerability. Due to insufficient verification of the packets, successful exploitation may cause the device reboot and denial of service (DoS) condition. (Vulnerability ID: HWPSIRT-2019-03109)
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190522-01-switch-en
Various Sources x_refsource_confirm
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190522-01-switch-en
Scores
CVSS v3
7.5
EPSS
0.0014
EPSS Percentile
33.8%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-20
Status
published
Products (50)
huawei/s12700_firmware
v200r005c00
huawei/s12700_firmware
v200r006c00
huawei/s12700_firmware
v200r007c00
huawei/s12700_firmware
v200r008c00
huawei/s12700_firmware
v200r010c00
huawei/s12700_firmware
v200r011c10
huawei/s12700_firmware
v200r012c00
huawei/s12700_firmware
v200r013c00
huawei/s1700_firmware
v200r008c00
huawei/s1700_firmware
v200r009c00
... and 40 more
Published
Jun 04, 2019
Tracked Since
Feb 18, 2026