CVE Vulnerabilities

CVE-2021-22342

Published: Jun 22, 2021 | Modified: Jun 28, 2022
CVSS 3.x
4.9
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

There is an information leak vulnerability in Huawei products. A module does not deal with specific input sufficiently. High privilege attackers can exploit this vulnerability by performing some operations. This can lead to information leak. Affected product versions include: IPS Module versions V500R005C00, V500R005C10, V500R005C20; NGFW Module versions V500R005C00,V500R005C10, V500R005C20; SeMG9811 versions V500R005C00; USG9500 versions V500R001C00, V500R001C20, V500R001C30, V500R001C50, V500R001C60, V500R001C80, V500R005C00, V500R005C10, V500R005C20.

Affected Software

Name Vendor Start Version End Version
Ips_module_firmware Huawei v500r005c00 (including) v500r005c00 (including)
Ips_module_firmware Huawei v500r005c10 (including) v500r005c10 (including)
Ips_module_firmware Huawei v500r005c20 (including) v500r005c20 (including)

References