534
VMScore

CVE-2021-37131

Published: 27/10/2021 Updated: 29/10/2021
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

There is a CSV injection vulnerability in ManageOne, iManager NetEco and iManager NetEco 6000. An attacker with high privilege may exploit this vulnerability through some operations to inject the CSV files. Due to insufficient input validation of some parameters, the attacker can exploit this vulnerability to inject CSV files to the target device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei manageone 6.5.1

huawei manageone 6.5.1.1

huawei manageone 8.0.0

huawei manageone 8.0.1

huawei imanager neteco v600r010c00cp2001

huawei imanager neteco v600r010c00cp2002

huawei imanager neteco v600r010c00cp3001

huawei imanager neteco v600r010c00cp3002

huawei imanager neteco v600r010c00cp3101

huawei imanager neteco v600r010c00cp3102

huawei imanager neteco v600r010c00spc100

huawei imanager neteco v600r010c00spc110

huawei imanager neteco v600r010c00spc120

huawei imanager neteco v600r010c00spc200

huawei imanager neteco v600r010c00spc210

huawei imanager neteco v600r010c00spc300

huawei imanager neteco v600r010c00spc310

huawei imanager neteco 6000 v600r009c00cp2201

huawei imanager neteco 6000 v600r009c00cp2301

huawei imanager neteco 6000 v600r009c00spc100

huawei imanager neteco 6000 v600r009c00spc110

huawei imanager neteco 6000 v600r009c00spc120

huawei imanager neteco 6000 v600r009c00spc190

huawei imanager neteco 6000 v600r009c00spc200

huawei imanager neteco 6000 v600r009c00spc201

huawei imanager neteco 6000 v600r009c00spc202

huawei imanager neteco 6000 v600r009c00spc210

huawei imanager neteco 6000 v600r009c00spc220

huawei imanager neteco 6000 v600r009c00spc221

huawei imanager neteco 6000 v600r009c00spc230

huawei imanager neteco 6000 v600r009c00spc232