CVE-2020-1877: Huawei NIP6800 Firmware

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when administrator log in to the device and performs some operations. Successful exploit could cause certain process reboot.

Affected products

  • Huawei NIP6800 Firmware: version v500r001c30 only; version v500r001c60spc500 only; version v500r005c00 only
  • Huawei Secospace USG6600 Firmware: version v500r001c30spc200 only; version v500r001c30spc600 only; version v500r001c60spc500 only; version v500r005c00 only
  • Huawei USG9500 Firmware: version v500r001c30spc200 only; version v500r001c30spc600 only; version v500r001c60spc500 only; version v500r005c00 only

Published 2020-02-28. Last modified 2026-06-17.