HIGH🇵🇱 Wersja polska

CVE-2021-22320

CVSS 7.5v3.1pub. 2021-03-22upd. 2024-11-21

There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This can lead to denial of service. Affected product include some versions of IPS Module, NGFW Module, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500 and Secospace USG6600.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
  • Huawei Ips Module

    HW
    Huawei
    all versions
  • Huawei Ips Module Firmware

    OS
    Huawei
    v500r005c00spc100v500r005c00spc200v500r005c20spc300
  • Huawei Ngfw Module

    HW
    Huawei
    all versions
  • Huawei Ngfw Module Firmware

    OS
    Huawei
    v500r005c00spc100v500r005c00spc200v500r005c20spc300
  • Huawei Nip6600

    HW
    Huawei
    all versions
  • Huawei Nip6600 Firmware

    OS
    Huawei
    v500r001c30spc200v500r001c30spc600v500r001c60spc500v500r005c00spc100v500r005c00spc200v500r005c20spc300v500r005c20spc500
  • Huawei Nip6800

    HW
    Huawei
    all versions
  • Huawei Nip6800 Firmware

    OS
    Huawei
    v500r001c60spc500v500r005c00spc100v500r005c00spc200v500r005c20spc300v500r005c20spc500
  • Huawei Secospace Usg6300

    HW
    Huawei
    all versions
  • Huawei Secospace Usg6300 Firmware

    OS
    Huawei
    v500r001c30spc200v500r001c30spc600v500r001c60spc500v500r005c00spc100v500r005c00spc200v500r005c20spc300v500r005c20spc500
  • Huawei Secospace Usg6500

    HW
    Huawei
    all versions
  • Huawei Secospace Usg6500 Firmware

    OS
    Huawei
    v500r001c30spc200v500r001c30spc600v500r001c60spc500v500r005c00spc100v500r005c00spc200v500r005c20spc300v500r005c20spc500
  • Huawei Secospace Usg6600

    HW
    Huawei
    all versions
  • Huawei Secospace Usg6600 Firmware

    OS
    Huawei
    v500r001c30spc200v500r001c30spc600v500r001c60spc500v500r005c00spc100v500r005c00spc200v500r005c20spc300v500r005c20spc500
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
DoS
CWE
References

Related vulnerabilities

CVE-2020-9099CRITICAL9.8PL ✓same product

Huawei IPS/NGFW/NIP/USG — obejście uwierzytelnienia (Auth Bypass)

CVE-2016-4576CRITICAL9.8PL ✓same product

Buffer overflow w module ASPF urządzeń Huawei — RCE i DoS

CVE-2021-37129HIGH7.5same product

There is an out of bounds write vulnerability in some Huawei products. The vulnerability is caused by a functi...

CVE-2020-9213HIGH7.5same product

There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper...

CVE-2020-1847HIGH7.5same product

There is a denial of service vulnerability in some Huawei products. There is no protection against the attack ...