CVE-2020-25195

IMPROPER INPUT VALIDATION CWE-20
The length of the affected product’s input fields is verified only on the client side when receiving input from the configuration web server, which may allow an attacker to bypass the check and send input to crash the device.

Risk Information

  • CVE ID
  • CVE-2020-25195
  • Vendor
  • Host Engineering
  • Product
  • H0-, H2-, H4ECOM100 Module
  • CVSS v3
  • 7.5