CVE-2020-9213: Huawei Ngfw Module Firmware

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling of the packets, an attacker may craft many specific packets. Successful exploit may cause some services to be abnormal. Affected products include some versions of NGFW Module, NIP6300, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500, Secospace USG6600 and SG9500.

Affected products

  • Huawei Ngfw Module Firmware: version v500r005c00 only
  • Huawei NIP6300 Firmware: version v500r001c30 only; version v500r001c60 only; version v500r005c00 only
  • Huawei NIP6600 Firmware: version v500r001c30 only; version v500r001c60 only; version v500r005c00 only
  • Huawei NIP6800 Firmware: version v500r001c60 only; version v500r005c00 only
  • Huawei Secospace USG6300 Firmware: version v500r001c30 only; version v500r001c60 only; version v500r005c00 only
  • Huawei Secospace USG6500 Firmware: version v500r001c30 only; version v500r001c60 only; version v500r005c00 only
  • Huawei Secospace USG6600 Firmware: version v500r001c30 only; version v500r001c60 only; version v500r005c00 only
  • Huawei USG9500 Firmware: version v500r001c30 only; version v500r001c60 only; version v500r005c00 only

Published 2021-03-22. Last modified 2026-06-17.