CVE-2020-9091

MEDIUM

Huawei Taurus-an00b Firmware - Out-of-Bounds Write

Title source: rule
STIX 2.1

Description

Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have an out-of-bounds read and write vulnerability. Some functions do not verify inputs sufficiently. Attackers can exploit this vulnerability by sending specific request. This could compromise normal service of the affected device.

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0002
EPSS Percentile 6.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-125 CWE-787
Status published
Products (1)
huawei/taurus-an00b_firmware 10.1.0.156\(c00e155r7p2\)
Published Oct 12, 2020
Tracked Since Feb 18, 2026