CVE-2014-3222
Status: ModifiedHigh (7)—💥 Exploit
In Huawei eSpace Meeting with software V100R001C03SPC201 and the earlier versions, attackers that obtain the permissions assigned to common users can elevate privileges to access and set specific key resources.
CVSS
- Version: 3.0
- Vector: CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
- Base score: 7
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.64%
- Percentile among all scored CVEs: 49
- Score date: 10/7/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
💥 Public exploits
Exploit code or detection templates are publicly available. This is not the same as confirmed active exploitation (KEV), but it raises the risk: patch with priority.
- Published on Exploit-DB · Huawei Technologies eSpace Meeting Service 1.0.0.23 - Local Privilege Escalation (3/12/2014)
Affected technologies (1)
CWEs
- CWE-264
References
Raw JSON (NVD)
Show
{
"id": "CVE-2014-3222",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 6.6,
"accessVector": "LOCAL",
"vectorString": "AV:L/AC:M/Au:N/C:C/I:C/A:P",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 9.5,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 3.4,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV30": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 7,
"attackVector": "LOCAL",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "HIGH",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 1
}
]
},
"affected": [
{
"source": "psirt@huawei.com",
"affectedData": [
{
"vendor": "n/a",
"product": "eSpace Meeting V100R001C03SPC201 and the earlier versions",
"versions": [
{
"status": "affected",
"version": "eSpace Meeting V100R001C03SPC201 and the earlier versions"
}
]
}
]
}
],
"published": "2017-04-02T20:59:00.203",
"references": [
{
"url": "http://www.huawei.com/en/psirt/security-advisories/hw-329170",
"tags": [
"Vendor Advisory"
],
"source": "psirt@huawei.com"
},
{
"url": "http://www.huawei.com/en/psirt/security-advisories/hw-329170",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-264"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "In Huawei eSpace Meeting with software V100R001C03SPC201 and the earlier versions, attackers that obtain the permissions assigned to common users can elevate privileges to access and set specific key resources."
},
{
"lang": "es",
"value": "En Huawei eSpace Meeting con software V100R001C03SPC201 y las versiones anteriores, los atacantes que obtienen los permisos asignados a usuarios comunes pueden elevar los privilegios para acceder y establecer los recursos clave específicos."
}
],
"lastModified": "2026-06-17T00:07:49.563",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:huawei:espace_meeting:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "32C31A08-D48B-49C3-AF25-B726FE75C577",
"versionEndIncluding": "v100r001c03spc201"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "psirt@huawei.com"
}