CVE-2021-22320: High severity huawei ips firmware vulnerability
There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This can lead to denial of service. Affected product include some versions of IPS Module, NGFW Module, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500 and Secospace USG6600.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-22320.
What is the severity of CVE-2021-22320?
The severity of CVE-2021-22320 is high with a severity value of 7.5.
Which products are affected by CVE-2021-22320?
The affected products include some versions of Huawei IPS Module Firmware, Huawei Ngfw Module Firmware, Huawei Nip6600 Firmware, Huawei Nip6800 Firmware, Huawei Secospace Usg6300 Firmware, Huawei Secospace Usg6500 Firmware, and Huawei Secospace Usg6600 Firmware.
What is the impact of CVE-2021-22320?
CVE-2021-22320 can lead to denial of service (DoS) as attackers can exploit the vulnerability by sending malicious messages to an affected module.
Where can I find more information about CVE-2021-22320?
You can find more information about CVE-2021-22320 on the official Huawei security advisories page: https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210210-03-dos-en