CVE-2021-40043
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
The laser command injection vulnerability exists on AIS-BW80H-00 versions earlier than AIS-BW80H-00 9.0.3.4(H100SP13C00). The devices cannot effectively defend against external malicious interference. Attackers need the device to be visually exploitable and successful triggering of this vulnerability could execute voice commands on the device.
Affected (1)
Products: Huawei: Ais Bw80h 00 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.0.3.4\(h100sp13c00\) |
| Running on/with | Platform Versions |
|---|---|
Huawei Ais Bw80h 00 | All versions |
References (2)
Source: psirt@huawei.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.