VYPR
High severity7.8NVD Advisory· Published Dec 29, 2020· Updated Jun 17, 2026

CVE-2020-9207

CVE-2020-9207

Description

There is an improper authentication vulnerability in some verisons of Huawei CloudEngine product. A module does not verify the input file properly. Attackers can exploit this vulnerability by crafting malicious files to bypass current verification mechanism. This can compromise normal service.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • V200R019C00SPC800+ 1 more
    • (no CPE)range: V200R019C00SPC800
    • cpe:2.3:o:huawei:cloudengine_12800_firmware:v200r019c00spc800:*:*:*:*:*:*:*
  • Huawei/Cloudengine 5800 Firmwarecpe-rescue2 versions
    V200R019C00SPC800+ 1 more
    • (no CPE)range: V200R019C00SPC800
    • cpe:2.3:o:huawei:cloudengine_5800_firmware:v200r019c00spc800:*:*:*:*:*:*:*
  • Huawei/Cloudengine 6800 Firmwarecpe-rescue4 versions
    V200R005C20SPC800+ 3 more
    • (no CPE)range: V200R005C20SPC800
    • cpe:2.3:o:huawei:cloudengine_6800_firmware:v200r005c20spc800:*:*:*:*:*:*:*
    • cpe:2.3:o:huawei:cloudengine_6800_firmware:v200r019c00spc800:*:*:*:*:*:*:*
    • (no CPE)
  • Huawei/Cloudengine 7800 Firmwarecpe-rescue2 versions
    V200R019C00SPC800+ 1 more
    • (no CPE)range: V200R019C00SPC800
    • cpe:2.3:o:huawei:cloudengine_7800_firmware:v200r019c00spc800:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.