CVE-2021-40007: Medium severity huawei ecns280 vulnerability
Published Dec 13, 2021
·Updated
There is an information leak vulnerability in eCNS280TD V100R005C10SPC650. The vulnerability is caused by improper log output management. An attacker with the ability to access the log file of device may lead to information disclosure.
Affected Software
2 affected components
Huawei Ecns280 Td Firmware=v100r005c10spc650
Huawei Ecns280 Td
Event History
Dec 13, 2021
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-40007?
The severity of CVE-2021-40007 is rated as medium with a CVSS score of 6.5.
2
How does CVE-2021-40007 vulnerability occur?
CVE-2021-40007 vulnerability is caused by improper log output management leading to an information leak.
3
Which software versions are affected by CVE-2021-40007?
The Huawei Ecns280 Td Firmware version v100r005c10spc650 is affected by CVE-2021-40007.
4
What can an attacker achieve by exploiting CVE-2021-40007?
An attacker exploiting CVE-2021-40007 may access the log file of the device, leading to information disclosure.