Vulnerability Details CVE-2020-9100
Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 6.4%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.4
Products affected by CVE-2020-9100
-
cpe:2.3:a:huawei:hisuite:-
-
cpe:2.3:a:huawei:hisuite:10.0.0.510
-
cpe:2.3:a:huawei:hisuite:2.3.15
-
cpe:2.3:a:huawei:hisuite:2.3.28
-
cpe:2.3:a:huawei:hisuite:2.3.35
-
cpe:2.3:a:huawei:hisuite:2.3.42
-
cpe:2.3:a:huawei:hisuite:2.3.50
-
cpe:2.3:a:huawei:hisuite:2.3.55
-
cpe:2.3:a:huawei:hisuite:2.3.55.1
-
cpe:2.3:a:huawei:hisuite:4.0.3.301
-
cpe:2.3:a:huawei:hisuite:4.0.5.300_ove
-
cpe:2.3:a:huawei:hisuite:9.1.0.300
-
cpe:2.3:a:huawei:hisuite:9.1.0.305
-
cpe:2.3:a:huawei:hisuite:9.1.0.312