threat
engine
.sh
Back
·
··:··
Home
/
Product
/
huawei ngfw module firmware
Product
huawei ngfw module firmware
56 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2020-1824
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2020-1823
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2020-1822
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2020-1821
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2020-1820
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2020-1819
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2020-1818
all versions
There are multiple out of bounds (OOB) read vulnerabilities in the implementation of the Common Open Policy Service (COPS) protoco
3.7
LOW
CVE-2021-22356
all versions
There is a weak secure algorithm vulnerability in Huawei products. A weak secure algorithm is used in a module. Attackers can expl
5.9
MEDIUM
CVE-2021-37129
all versions
There is an out of bounds write vulnerability in some Huawei products. The vulnerability is caused by a function of a module that
7.5
HIGH
CVE-2021-22341
all versions
There is a memory leak vulnerability in Huawei products. A resource management weakness exists in a module. Attackers with high pr
4.9
MEDIUM
CVE-2021-22342
all versions
There is an information leak vulnerability in Huawei products. A module does not deal with specific input sufficiently. High privi
4.9
MEDIUM
CVE-2021-22411
all versions
There is an out-of-bounds write vulnerability in some Huawei products. The code of a module have a bad judgment logic. Attackers c
6.5
MEDIUM
CVE-2021-22312
all versions
There is a memory leak vulnerability in some Huawei products. An authenticated remote attacker may exploit this vulnerability by s
6.5
MEDIUM
CVE-2021-22320
all versions
There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers ca
7.5
HIGH
CVE-2020-9213
all versions
There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling of the pac
7.5
HIGH
CVE-2020-9101
all versions
There is an out-of-bounds write vulnerability in some products. An unauthenticated attacker crafts malformed packets with specific
6.5
MEDIUM
CVE-2019-19417
all versions
The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three v
7.5
HIGH
CVE-2019-19416
all versions
The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three v
7.5
HIGH
CVE-2019-19415
all versions
The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three v
7.5
HIGH
CVE-2020-9099
all versions
Huawei products IPS Module; NGFW Module; NIP6300; NIP6600; NIP6800; Secospace USG6300; Secospace USG6500; Secospace USG6600; USG95
9.8
CRITICAL
CVE-2020-1856
all versions
Huawei NGFW Module, NIP6300, NIP6600, Secospace USG6500, Secospace USG6600, and USG9500 versions V500R001C30, V500R001C60, and V50
7.5
HIGH
CVE-2019-5304
all versions
Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request
7.5
HIGH
CVE-2017-17258
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
7.5
HIGH
CVE-2017-17257
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
7.5
HIGH
CVE-2017-17256
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
7.5
HIGH
CVE-2017-17255
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
7.5
HIGH
CVE-2017-17254
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
7.5
HIGH
CVE-2017-17253
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
7.5
HIGH
CVE-2017-17252
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2017-17251
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2017-17330
all versions
Huawei AR3200 V200R005C32; V200R006C10; V200R006C11; V200R007C00; V200R007C01; V200R007C02; V200R008C00; V200R008C10; V200R008C20;
3.3
LOW
CVE-2017-17138
all versions
PEM module of DP300 V500R002C00; IPS Module V500R001C00; V500R001C30; NGFW Module V500R001C00; V500R002C00; NIP6300 V500R001C00; V
5.5
MEDIUM
CVE-2017-17137
all versions
PEM module of Huawei DP300 V500R002C00; IPS Module V500R001C00; V500R001C30; NGFW Module V500R001C00; V500R002C00; NIP6300 V500R00
5.5
MEDIUM
CVE-2017-17136
all versions
PEM module of Huawei DP300 V500R002C00; IPS Module V500R001C00; V500R001C30; NGFW Module V500R001C00; V500R002C00; NIP6300 V500R00
5.5
MEDIUM
CVE-2017-17135
all versions
PEM module of Huawei DP300 V500R002C00; IPS Module V500R001C00; V500R001C30; NGFW Module V500R001C00; V500R002C00; NIP6300 V500R00
5.5
MEDIUM
CVE-2017-17297
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2017-17296
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2017-17295
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2017-17157
all versions
IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH
7.5
HIGH
CVE-2017-17156
all versions
IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH
7.5
HIGH
CVE-2017-17155
all versions
IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH
7.5
HIGH
CVE-2017-17154
all versions
IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH
7.5
HIGH
CVE-2017-17153
all versions
IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH
7.5
HIGH
CVE-2017-17152
all versions
IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH
5.9
MEDIUM
CVE-2017-15350
all versions
The Common Open Policy Service Protocol (COPS) module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C3
5.3
MEDIUM
CVE-2017-15348
all versions
Huawei IPS Module V500R001C00, NGFW Module V500R001C00, NIP6300 V500R001C00, NIP6600 V500R001C00, Secospace USG6300 V500R001C00, S
7.5
HIGH
CVE-2017-15339
all versions
The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C3
3.7
LOW
CVE-2017-15338
all versions
The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C3
3.7
LOW
CVE-2017-15337
all versions
The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C3
3.7
LOW
CVE-2017-15336
all versions
The SIP backup feature in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V5
5.3
MEDIUM
CVE-2017-15335
all versions
The SIP backup feature in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V5
5.3
MEDIUM
CVE-2017-15334
all versions
The SIP backup feature in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V5
5.3
MEDIUM
CVE-2017-15332
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2017-15331
all versions
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200
5.3
MEDIUM
CVE-2016-4577
all versions
Buffer overflow in the Smart DNS functionality in the Huawei NGFW Module and Secospace USG6300, USG6500, USG6600, and USG9500 fire
7.5
HIGH
CVE-2016-4576
all versions
Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300,
9.8
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin