← Back

CVE-2021-37131

nvd nist
Published: Oct 27, 2021Modified: Nov 21, 2024

JSON object

Loading...
6.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD

Description

There is a CSV injection vulnerability in ManageOne, iManager NetEco and iManager NetEco 6000. An attacker with high privilege may exploit this vulnerability through some operations to inject the CSV files. Due to insufficient input validation of some parameters, the attacker can exploit this vulnerability to inject CSV files to the target device.

Affected (57)

3 products
Imanager Neteco
Imanager Neteco 6000
Manageone
Configuration A
57 vulnerable
Vulnerable SoftwareAffected Versions
Huawei
Version v600r010c00cp2001
Version v600r010c00cp2002
Version v600r010c00cp3001
Version v600r010c00cp3002
Version v600r010c00cp3101
Version v600r010c00cp3102
Version v600r010c00spc100
Version v600r010c00spc110
Version v600r010c00spc120
Version v600r010c00spc200
Version v600r010c00spc210
Version v600r010c00spc300
Version v600r010c00spc310
Huawei
Version v600r009c00cp2201
Version v600r009c00cp2301
Version v600r009c00spc100
Version v600r009c00spc110
Version v600r009c00spc120
Version v600r009c00spc190
Version v600r009c00spc200
Version v600r009c00spc201
Version v600r009c00spc202
Version v600r009c00spc210
Version v600r009c00spc220
Version v600r009c00spc221
Version v600r009c00spc230
Version v600r009c00spc232
Huawei
Version 6.5.1.1 b010
Version 6.5.1.1 b020
Version 6.5.1.1 b030
Version 6.5.1.1 b040
Version 6.5.1.1 spc100.b050
Version 6.5.1.1 spc101.b010
Version 6.5.1.1 spc101.b040
Version 6.5.1.1 spc200.b010
Version 6.5.1.1 spc200.b030
Version 6.5.1.1 spc200.b040
Version 6.5.1.1 spc200.b050
Version 6.5.1.1 spc200.b060
Version 6.5.1.1 spc200.b070
Version 6.5.1.1 spc200
Version 6.5.1 rc1.b060
Version 6.5.1 rc1.b070
Version 6.5.1 rc2.b020
Version 6.5.1 rc2.b030
Version 6.5.1 rc2.b040
Version 6.5.1 rc2.b050
Version 6.5.1 rc2.b060
Version 6.5.1 rc2.b070
Version 6.5.1 rc2.b090
Version 8.0.0
Version 8.0.0 lcn080
Version 8.0.0 lcnd81
Version 8.0.0 rc2
Version 8.0.0 rc3
Version 8.0.0 spc100
Version 8.0.1

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.