Use-After-Free Vulnerability in Huawei CloudEngine Products
CVE-2021-37122

6.5MEDIUM

Key Information:

Summary

A use-after-free vulnerability exists in Huawei CloudEngine products, enabling attackers to craft specific packets that can exploit this flaw. Successful attacks could lead to abnormal service disruptions, making it critical for users to ensure they are operating on secure and updated versions of these products.

Affected Version(s)

CloudEngine 12800;CloudEngine 5800;CloudEngine 6800;CloudEngine 7800 V200R005C10SPC800,V200R019C00SPC800

CloudEngine 12800;CloudEngine 5800;CloudEngine 6800;CloudEngine 7800 V200R005C10SPC800,V200R005C20SPC800,V200R019C00SPC800

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.