Loading
There is an improper authentication vulnerability in some verisons of Huawei CloudEngine product. A module does not verify the input file properly. Attackers can exploit this vulnerability by crafting malicious files to bypass current verification mechanism. This can compromise normal service.
Use CWE-287, Huawei vendor hub and Cloudengine 12800 Firmware product page to widen CVE-2020-9207 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-40008, CVE-2021-22328 and CVE-2021-22332 for nearby disclosures in the same product family.