6.5

CVE-2021-22339

There is a denial of service vulnerability in some versions of ManageOne. In specific scenarios, due to the insufficient verification of the parameter, an attacker may craft some specific parameter. Successful exploit may cause some services abnormal.

Data is provided by the National Vulnerability Database (NVD)
HuaweiManageone Version6.5 Updaterc2.b050
HuaweiManageone Version6.5.0 Update-
HuaweiManageone Version6.5.0 Updatespc100.b210
HuaweiManageone Version6.5.0 Updatespc100.b220
HuaweiManageone Version6.5.1 Updaterc1.b060
HuaweiManageone Version6.5.1 Updaterc1.b070
HuaweiManageone Version6.5.1 Updaterc1.b080
HuaweiManageone Version6.5.1 Updaterc2.b010
HuaweiManageone Version6.5.1 Updaterc2.b020
HuaweiManageone Version6.5.1 Updaterc2.b030
HuaweiManageone Version6.5.1 Updaterc2.b040
HuaweiManageone Version6.5.1 Updaterc2.b050
HuaweiManageone Version6.5.1 Updaterc2.b060
HuaweiManageone Version6.5.1 Updaterc2.b070
HuaweiManageone Version6.5.1 Updaterc2.b080
HuaweiManageone Version6.5.1 Updaterc2.b090
HuaweiManageone Version6.5.1 Updatespc100.b050
HuaweiManageone Version6.5.1 Updatespc101.b010
HuaweiManageone Version6.5.1 Updatespc101.b040
HuaweiManageone Version6.5.1 Updatespc200
HuaweiManageone Version6.5.1 Updatespc200.b010
HuaweiManageone Version6.5.1 Updatespc200.b030
HuaweiManageone Version6.5.1 Updatespc200.b040
HuaweiManageone Version6.5.1 Updatespc200.b050
HuaweiManageone Version6.5.1 Updatespc200.b060
HuaweiManageone Version6.5.1 Updatespc200.b070
HuaweiManageone Version6.5.1.1 Updateb010
HuaweiManageone Version6.5.1.1 Updateb020
HuaweiManageone Version6.5.1.1 Updateb030
HuaweiManageone Version6.5.1.1 Updateb040
HuaweiManageone Version8.0.0 Update-
HuaweiManageone Version8.0.0 Updatelcnd81
HuaweiManageone Version8.0.0 Updaterc2
HuaweiManageone Version8.0.0 Updaterc3
HuaweiManageone Version8.0.0 Updaterc3.b041
HuaweiManageone Version8.0.0 Updaterc3.spc100
HuaweiManageone Version8.0.0 Updatespc100
HuaweiManageone Version8.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.07% 0.173
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 3.5 6.8 2.9
AV:N/AC:M/Au:S/C:N/I:N/A:P
CWE-345 Insufficient Verification of Data Authenticity

The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.