CVE-2021-22361: High severity huawei ecns280 vulnerability
There is an improper authorization vulnerability in eCNS280 V100R005C00, V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200. A file access is not authorized correctly. Attacker with low access may launch privilege escalation in a specific scenario. This may compromise the normal service.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-22361.
What is the severity of CVE-2021-22361?
The severity of CVE-2021-22361 is high with a severity value of 7.8.
Which software versions are affected by CVE-2021-22361?
The software versions affected by CVE-2021-22361 are eCNS280 V100R005C00, V100R005C10, and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200.
What is the impact of CVE-2021-22361?
CVE-2021-22361 can allow an attacker with low access to launch privilege escalation in a specific scenario, compromising the normal service.
Where can I find more information about CVE-2021-22361?
You can find more information about CVE-2021-22361 on the Huawei PSIRT Security Advisories website: https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210519-02-cgp-en.