CVE-2019-5275
CVE-2019-5275
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
26 Dec 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
USG9500 with versions of V500R001C30;V500R001C60 have a denial of service vulnerability. Due to a flaw in the X.509 implementation in the affected products which can result in a heap buffer overflow when decoding a certificate, an attacker may exploit the vulnerability by a malicious certificate to perform a denial of service attack on the affected products.
Affected products
Huawei · USG9500Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →