First published: Mon Jan 31 2022(Updated: )
There is an information exposure vulnerability on several Huawei Products. The vulnerability is due to that the software does not properly protect certain information. Successful exploit could cause information disclosure. Affected product versions include: CloudEngine 12800 V200R005C10SPC800; CloudEngine 5800 V200R005C10SPC800, V200R019C00SPC800; CloudEngine 6800 V200R005C10SPC800, V200R005C20SPC800, V200R019C00SPC800; CloudEngine 7800 V200R005C10SPC800, V200R019C00SPC800.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Cloudengine 12800 Firmware | =v200r005c10spc800 | |
Huawei CloudEngine 12800 | ||
Huawei Cloudengine 5800 Firmware | =v200r005c10spc800 | |
Huawei Cloudengine 5800 Firmware | =v200r019c00spc800 | |
Huawei CloudEngine 5800 | ||
Huawei Cloudengine 6800 Firmware | =v200r005c10spc800 | |
Huawei Cloudengine 6800 Firmware | =v200r005c20spc800 | |
Huawei Cloudengine 6800 Firmware | =v200r019c00spc800 | |
Huawei CloudEngine 6800 | ||
Huawei Cloudengine 7800 Firmware | =v200r005c10spc800 | |
Huawei Cloudengine 7800 Firmware | =v200r019c00spc800 | |
Huawei Cloudengine 7800 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-40033.
The severity of CVE-2021-40033 is medium (5.5).
Huawei CloudEngine 12800 Firmware (v200r005c10spc800), Huawei CloudEngine 5800 Firmware (v200r005c10spc800, v200r019c00spc800), Huawei CloudEngine 6800 Firmware (v200r005c10spc800, v200r005c20spc800, v200r019c00spc800), and Huawei CloudEngine 7800 Firmware (v200r005c10spc800, v200r019c00spc800) are affected by CVE-2021-40033.
Successful exploitation of CVE-2021-40033 could cause information disclosure.
You can find more information about CVE-2021-40033 on the Huawei Security Advisory page at: https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20220112-01-infodis-en