CVE-2020-9248

MEDIUM

Huawei FusionCompute 8.0.0 - Improper Authorization Leading to Privilege Escalation

Title source: llm
STIX 2.1

Description

Huawei FusionComput 8.0.0 have an improper authorization vulnerability. A module does not verify some input correctly and authorizes files with incorrect access. Attackers can exploit this vulnerability to launch privilege escalation attack. This can compromise normal service.

References (1)

Core 1

Scores

CVSS v3 6.7
EPSS 0.0003
EPSS Percentile 7.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
huawei/fusioncompute 8.0.0
Published Jul 31, 2020
Tracked Since Feb 18, 2026