7.2
CVSSv3

CVE-2021-22377

Published: 22/06/2021 Updated: 29/06/2021
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

There is a command injection vulnerability in S12700 V200R019C00SPC500, S2700 V200R019C00SPC500, S5700 V200R019C00SPC500, S6700 V200R019C00SPC500 and S7700 V200R019C00SPC500. A module does not verify specific input sufficiently. Attackers can exploit this vulnerability by sending malicious parameters to inject command. This can compromise normal service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei s12700_firmware v200r019c00spc500

huawei s2700_firmware v200r019c00spc500

huawei s5700_firmware v200r019c00spc500

huawei s6700_firmware v200r019c00spc500

huawei s7700_firmware v200r019c00spc500