Huawei
Huawei Ecns280 TD Firmware: vulnerabilidades y CVE
Huawei Ecns280 TD Firmware tiene 8 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE8
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-40007 | Media (6.5) | 0.56% | — | 13 dic 2021 | There is an information leak vulnerability in eCNS280_TD V100R005C10SPC650. The vulnerability is caused by improper log output management. An attacker with the ability to access the log file of device may lead to… |
| CVE-2021-39995 | Media (6.5) | 0.59% | — | 29 nov 2021 | Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi contains an out-of-bounds read vulnerability that could lead to a denial of service. Affected… |
| CVE-2021-37036 | Media (5.5) | 0.17% | — | 23 nov 2021 | There is an information leakage vulnerability in FusionCompute 6.5.1, eCNS280_TD V100R005C00 and V100R005C10. Due to the improperly storage of specific information in the log file, the attacker can obtain the… |
| CVE-2021-22396 | Alta (7.8) | 0.15% | — | 2 ago 2021 | There is a privilege escalation vulnerability in some Huawei products. Due to improper privilege management, a local attacker with common privilege may access some specific files in the affected products. Successful… |
| CVE-2021-22383 | Media (4.9) | 0.60% | — | 22 jun 2021 | There is an out-of-bounds read vulnerability in eCNS280_TD V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a message-handling function that contains an… |
| CVE-2021-22378 | Media (5.3) | 0.40% | — | 22 jun 2021 | There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be operated by another thread that is operating concurrently. Successful… |
| CVE-2021-22363 | Alta (7.5) | 0.68% | — | 22 jun 2021 | There is a resource management error vulnerability in eCNS280_TD V100R005C10SPC650. An attacker needs to perform specific operations to exploit the vulnerability on the affected device. Due to improper resource… |
| CVE-2021-22300 | Media (4.1) | 0.15% | — | 6 feb 2021 | There is an information leak vulnerability in eCNS280_TD versions V100R005C00 and V100R005C10. A command does not have timeout exit mechanism. Temporary file contains sensitive information. This allows attackers to… |