High severity7.5NVD Advisory· Published Feb 17, 2020· Updated Jun 17, 2026
CVE-2020-1828
CVE-2020-1828
Description
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; and Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have an input validation vulnerability where the IPSec module does not validate a field in a specific message. Attackers can send specific message to cause out-of-bound read, compromising normal service.
Affected products
17cpe:2.3:o:huawei:nip6800_firmware:v500r001c30:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:huawei:nip6800_firmware:v500r001c30:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:nip6800_firmware:v500r001c60spc500:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:nip6800_firmware:v500r005c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r001c30spc200:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r001c30spc200:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r001c30spc600:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r001c60spc500:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:secospace_usg6600_firmware:v500r005c00:*:*:*:*:*:*:*
- (no CPE)range: V500R001C30SPC200
cpe:2.3:o:huawei:usg9500_firmware:v500r001c30spc200:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:huawei:usg9500_firmware:v500r001c30spc200:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:usg9500_firmware:v500r001c30spc600:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:usg9500_firmware:v500r001c60spc500:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:usg9500_firmware:v500r005c00:*:*:*:*:*:*:*
- Range: V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00
- Range: V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.