ZeroHour

CVE-2021-22321

CVSS 3.1
5.3 medium
EPSS
<1%p52
Published
()
Modified
Description

There is a use-after-free vulnerability in a Huawei product. A module cannot deal with specific operations in special scenarios. Attackers can exploit this vulnerability by performing malicious operations. This can cause memory use-after-free, compromising normal service. Affected product include some versions of NIP6300, NIP6600, NIP6800, S1700, S2700, S5700, S6700 , S7700, S9700, Secospace USG6300, Secospace USG6500, Secospace USG6600 and USG9500.

Vendors
huawei
Products
nip6300 firmware, nip6600 firmware, nip6800 firmware, s12700 firmware, s1700 firmware, s2700 firmware, s5700 firmware, s6700 firmware, s7700 firmware, s9700 firmware, secospace usg6300 firmware, secospace usg6500 firmware
Weakness
CWE-416
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.