CVE-2021-22311: High severity huawei manageone vulnerability
There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations with improper permissions. Affected product versions include: ManageOne versions 8.0.0, 8.0.1.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22311?
CVE-2021-22311 is an improper permission assignment vulnerability in Huawei ManageOne product.
What is the severity of CVE-2021-22311?
The severity of CVE-2021-22311 is high with a CVSS score of 7.2.
How does CVE-2021-22311 affect Huawei ManageOne?
CVE-2021-22311 allows certain users to perform operations with improper permissions in Huawei ManageOne versions 8.0.0 and 8.0.1.
How can I fix the CVE-2021-22311 vulnerability?
To fix the CVE-2021-22311 vulnerability, update Huawei ManageOne to a patched version as recommended by Huawei.
Where can I find more information about CVE-2021-22311?
You can find more information about CVE-2021-22311 in the Huawei Security Advisory: https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210203-01-manageone-en