7.8
CVE-2021-39976
- EPSS 0.17%
- Veröffentlicht 23.11.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:20:40
- Erkennungen
There is a privilege escalation vulnerability in CloudEngine 5800 V200R020C00SPC600. Due to lack of privilege restrictions, an authenticated local attacker can perform specific operation to exploit this vulnerability. Successful exploitation may cause the attacker to obtain a higher privilege.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Cloudengine 5800 Firmware Version v200r020c00spc600
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.17% | 0.067 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20211103-01-privilege-en