CVE-2021-22320
Last modified
CVE-2021-22320 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. EPSS estimates a 0.73% chance of exploitation in the next 30 days.
Description
There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This can lead to denial of service. Affected product include some versions of IPS Module, NGFW Module, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500 and Secospace USG6600.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Ips Module Firmware | v500r005c00spc100 |
| Huawei | Ips Module Firmware | v500r005c00spc200 |
| Huawei | Ips Module Firmware | v500r005c20spc300 |
| Huawei | Ngfw Module Firmware | v500r005c00spc100 |
| Huawei | Ngfw Module Firmware | v500r005c00spc200 |
| Huawei | Ngfw Module Firmware | v500r005c20spc300 |
| Huawei | Nip6600 Firmware | v500r001c30spc200 |
| Huawei | Nip6600 Firmware | v500r001c30spc600 |
| Huawei | Nip6600 Firmware | v500r001c60spc500 |
| Huawei | Nip6600 Firmware | v500r005c00spc100 |
| Huawei | Nip6600 Firmware | v500r005c00spc200 |
| Huawei | Nip6600 Firmware | v500r005c20spc300 |
| Huawei | Nip6600 Firmware | v500r005c20spc500 |
| Huawei | Nip6800 Firmware | v500r001c60spc500 |
| Huawei | Nip6800 Firmware | v500r005c00spc100 |
| Huawei | Nip6800 Firmware | v500r005c00spc200 |
| Huawei | Nip6800 Firmware | v500r005c20spc300 |
| Huawei | Nip6800 Firmware | v500r005c20spc500 |
| Huawei | Secospace Usg6300 Firmware | v500r001c30spc200 |
| Huawei | Secospace Usg6300 Firmware | v500r001c30spc600 |
| Huawei | Secospace Usg6300 Firmware | v500r001c60spc500 |
| Huawei | Secospace Usg6300 Firmware | v500r005c00spc100 |
| Huawei | Secospace Usg6300 Firmware | v500r005c00spc200 |
| Huawei | Secospace Usg6300 Firmware | v500r005c20spc300 |
| Huawei | Secospace Usg6300 Firmware | v500r005c20spc500 |
| Huawei | Secospace Usg6500 Firmware | v500r001c30spc200 |
| Huawei | Secospace Usg6500 Firmware | v500r001c30spc600 |
| Huawei | Secospace Usg6500 Firmware | v500r001c60spc500 |
| Huawei | Secospace Usg6500 Firmware | v500r005c00spc100 |
| Huawei | Secospace Usg6500 Firmware | v500r005c00spc200 |
| Huawei | Secospace Usg6500 Firmware | v500r005c20spc300 |
| Huawei | Secospace Usg6500 Firmware | v500r005c20spc500 |
| Huawei | Secospace Usg6600 Firmware | v500r001c30spc200 |
| Huawei | Secospace Usg6600 Firmware | v500r001c30spc600 |
| Huawei | Secospace Usg6600 Firmware | v500r001c60spc500 |
| Huawei | Secospace Usg6600 Firmware | v500r005c00spc100 |
| Huawei | Secospace Usg6600 Firmware | v500r005c00spc200 |
| Huawei | Secospace Usg6600 Firmware | v500r005c20spc300 |
| Huawei | Secospace Usg6600 Firmware | v500r005c20spc500 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-22320?
How severe is CVE-2021-22320?
How do I fix CVE-2021-22320?
Are you affected by CVE-2021-22320?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
