Improper validation of integrity check value in Huawei Myna - CVE-2020-9210
Published: January 18, 2021
Vulnerability identifier: #VU49564
CSH Severity: Low
CVSS v4: 7 [CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-9210
CWE-ID: CWE-354
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local attacker to compromise the target system.
The vulnerability exists due to a module does not perform sufficient integrity check. An attacker with physical access can install malware and compromise normal service of the affected device.
Affected software
Huawei Myna
How to mitigate CVE-2020-9210
Install updates from vendor's website.
Huawei Myna - update to 9.0.1.11(H100SP11C00)