CVE-2021-22292: High severity huawei ecns280 vulnerability
There is a denial of service (DoS) vulnerability in eCNS280 versions V100R005C00, V100R005C10. Due to a design defect, remote unauthorized attackers send a large number of specific messages to affected devices, causing system resource exhaustion and web application DoS.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22292?
CVE-2021-22292 is a denial of service (DoS) vulnerability in eCNS280 versions V100R005C00 and V100R005C10.
How does CVE-2021-22292 work?
CVE-2021-22292 allows remote unauthorized attackers to send a large number of specific messages to affected devices, causing system resource exhaustion and web application DoS.
Which Huawei products are affected by CVE-2021-22292?
eCNS280 versions V100R005C00 and V100R005C10 are affected by CVE-2021-22292.
What is the severity of CVE-2021-22292?
CVE-2021-22292 has a severity rating of 7.5 (high).
How can I fix CVE-2021-22292?
To fix CVE-2021-22292, update to a non-vulnerable version of the eCNS280 firmware as recommended by Huawei.