Command Injection Vulnerability in FusionCompute Products by Huawei
CVE-2021-37106
What is CVE-2021-37106?
A command injection vulnerability exists in the CMA service module of Huawei’s FusionCompute, affecting versions 6.3.0, 6.3.1, 6.5.0, and 8.0.0. This vulnerability arises from improper validation of user input while processing the default certificate file. Attackers could exploit this flaw to inject arbitrary commands into the system, which may lead to unauthorized access or control over the affected installations. Organizations using these versions are encouraged to apply available patches and monitoring solutions to safeguard against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FusionCompute 6.3.0,6.3.1,6.5.0,8.0.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved