Description
There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device. Successful exploit may cause an information leak. Affected product versions include: NIP6300 versions V500R001C00,V500R001C20,V500R001C30;NIP6600 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6300 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6500 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6600 versions V500R001C00,V500R001C20,V500R001C30,V500R001C50,V500R001C60,V500R001C80;USG9500 versions V500R005C00,V500R005C10.
Published: 2021-03-22
Score: 4.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-9456 There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device. Successful exploit may cause an information leak. Affected product versions include: NIP6300 versions V500R001C00,V500R001C20,V500R001C30;NIP6600 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6300 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6500 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6600 versions V500R001C00,V500R001C20,V500R001C30,V500R001C50,V500R001C60,V500R001C80;USG9500 versions V500R005C00,V500R005C10.
History

No history.

Subscriptions

Huawei Nip6300 Nip6300 Firmware Nip6600 Nip6600 Firmware Secospace Usg6300 Secospace Usg6300 Firmware Secospace Usg6500 Secospace Usg6500 Firmware Secospace Usg6600 Secospace Usg6600 Firmware Usg9500 Usg9500 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-03T18:37:18.540Z

Reserved: 2021-01-05T00:00:00.000Z

Link: CVE-2021-22310

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-03-22T19:15:11.773

Modified: 2024-11-21T05:49:53.197

Link: CVE-2021-22310

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses