CVE-2021-22293
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Some Huawei products have an inconsistent interpretation of HTTP requests vulnerability. Attackers can exploit this vulnerability to cause information leak. Affected product versions include: CampusInsight versions V100R019C10; ManageOne versions 6.5.1.1, 6.5.1.SPC100, 6.5.1.SPC200, 6.5.1RC1, 6.5.1RC2, 8.0.RC2. Affected product versions include: Taurus-AL00A versions 10.0.0.1(C00E1R1P1).
Algunos productos de Huawei presentan una vulnerabilidad de interpretación inconsistente de peticiones HTTP. Los atacantes pueden explotar esta vulnerabilidad para causar un filtrado de información. Las versiones de producto afectadas son: CampusInsight versiones V100R019C10; ManageOne versiones 6.5.1.1, 6.5.1.SPC100, 6.5.1.SPC200, 6.5.1RC1, 6.5.1RC2, 8.0.RC2. Las versiones de producto afectadas incluyen: Taurus-AL00A versión 10.0.0.1(C00E1R1P1)
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-05 CVE Reserved
- 2021-02-06 CVE Published
- 2023-10-22 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210120-01-http-en | 2021-02-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Taurus-al00a Firmware Search vendor "Huawei" for product "Taurus-al00a Firmware" | 10.0.0.1\(c00e1r1p1\) Search vendor "Huawei" for product "Taurus-al00a Firmware" and version "10.0.0.1\(c00e1r1p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Taurus-al00a Search vendor "Huawei" for product "Taurus-al00a" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Campusinsight Search vendor "Huawei" for product "Campusinsight" | v100r019c10 Search vendor "Huawei" for product "Campusinsight" and version "v100r019c10" | - |
Affected
| ||||||
Huawei Search vendor "Huawei" | Manageone Search vendor "Huawei" for product "Manageone" | 6.5.1.1 Search vendor "Huawei" for product "Manageone" and version "6.5.1.1" | - |
Affected
| ||||||
Huawei Search vendor "Huawei" | Manageone Search vendor "Huawei" for product "Manageone" | 6.5.1.1 Search vendor "Huawei" for product "Manageone" and version "6.5.1.1" | rc1 |
Affected
| ||||||
Huawei Search vendor "Huawei" | Manageone Search vendor "Huawei" for product "Manageone" | 6.5.1.1 Search vendor "Huawei" for product "Manageone" and version "6.5.1.1" | rc2 |
Affected
| ||||||
Huawei Search vendor "Huawei" | Manageone Search vendor "Huawei" for product "Manageone" | 6.5.1.1 Search vendor "Huawei" for product "Manageone" and version "6.5.1.1" | spc100 |
Affected
| ||||||
Huawei Search vendor "Huawei" | Manageone Search vendor "Huawei" for product "Manageone" | 6.5.1.1 Search vendor "Huawei" for product "Manageone" and version "6.5.1.1" | spc200 |
Affected
| ||||||
Huawei Search vendor "Huawei" | Manageone Search vendor "Huawei" for product "Manageone" | 8.0.0 Search vendor "Huawei" for product "Manageone" and version "8.0.0" | rc2 |
Affected
|