CVE-2021-22409: Medium severity huawei manageone vulnerability
There is a denial of service vulnerability in some versions of ManageOne. There is a logic error in the implementation of a function of a module. When the service pressure is heavy, there is a low probability that an exception may occur. Successful exploit may cause some services abnormal.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this denial of service vulnerability?
The vulnerability ID is CVE-2021-22409.
What is the severity of CVE-2021-22409?
The severity of CVE-2021-22409 is medium with a CVSS score of 5.3.
Which software versions are affected by CVE-2021-22409?
Versions 6.5-rc2.b050, 6.5.0, 6.5.0-spc100.b210, 6.5.1-rc1.b080, 6.5.1-rc2.b020, 6.5.1-rc2.b030, 6.5.1-rc2.b040, 6.5.1-rc2.b060, 6.5.1-rc2.b070, 6.5.1-rc2.b080, 6.5.1-rc2.b090, 6.5.1-spc100.b050, 6.5.1-spc101.b010, 6.5.1-spc101.b040, 6.5.1-spc200, 6.5.1-spc200.b010, 6.5.1-spc200.b030, 6.5.1-spc200.b040, 6.5.1-spc200.b050, 6.5.1-spc200.b060, 6.5.1-spc200.b070, 6.5.1.1-b010, 6.5.1.1-b020, 6.5.1.1-b030, 6.5.1.1-b040, 8.0.0, 8.0.0-lcnd81, 8.0.0-rc2, 8.0.0-rc3, 8.0.0-rc3.b041, 8.0.0-rc3.spc100, 8.0.0-spc100, and 8.0.1 of Huawei ManageOne are affected.
What is the nature of the vulnerability?
CVE-2021-22409 is a denial of service vulnerability caused by a logic error in the implementation of a function of a module in some versions of ManageOne.
Where can I find more information about CVE-2021-22409?
You can find more information about CVE-2021-22409 at the following link: https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210428-02-dos-en.