← Back

CVE-2021-22400

nvd nist
Published: Aug 3, 2021Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

Some Huawei Smartphones has an insufficient input validation vulnerability due to the lack of parameter validation. An attacker may trick a user into installing a malicious APP. The app can modify specific parameters, causing the system to crash. Affected product include:OxfordS-AN00A 10.0.1.10(C00E10R1P1),10.0.1.105(C00E103R3P3),10.0.1.115(C00E110R3P3),10.0.1.123(C00E121R3P3),10.0.1.135(C00E130R3P3),10.0.1.135(C00E130R4P1),10.0.1.152(C00E140R4P1),10.0.1.160(C00E160R4P1),10.0.1.167(C00E166R4P1),10.0.1.173(C00E172R5P1),10.0.1.178(C00E175R5P1) and 10.1.0.202(C00E79R5P1).

Affected (12)

1 product
Oxfords An00a Firmware
Configuration A
12 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version 10.0.1.105(c00e103r3p3)
Version 10.0.1.10(c00e10r1p1)
Version 10.0.1.115(c00e110r3p3)
Version 10.0.1.123(c00e121r3p3)
Version 10.0.1.135(c00e130r3p3)
Version 10.0.1.135(c00e130r4p1)
Version 10.0.1.152(c00e140r4p1)
Version 10.0.1.160(c00e160r4p1)
Version 10.0.1.167(c00e166r4p1)
Version 10.0.1.173(c00e172r5p1)
Version 10.0.1.178(c00e175r5p1)
Version 10.1.0.202(c00e79r5p1)
Running on/withPlatform Versions
Huawei
Oxfords An00a
All versions

References (2)

Timeline

No history available yet.