CVE-2021-40007
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
There is an information leak vulnerability in eCNS280_TD V100R005C10SPC650. The vulnerability is caused by improper log output management. An attacker with the ability to access the log file of device may lead to information disclosure.
Affected (1)
Products: Huawei: Ecns280 Td Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version v100r005c10spc650 |
| Running on/with | Platform Versions |
|---|---|
Huawei Ecns280 Td | All versions |
References (2)
Source: psirt@huawei.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.