CVE-2021-22440
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
There is a path traversal vulnerability in some Huawei products. The vulnerability is due to that the software uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the software does not properly validate the pathname. Successful exploit could allow the attacker to access a location that is outside of the restricted directory by a crafted filename. Affected product versions include:HUAWEI Mate 20 9.0.0.195(C01E195R2P1), 9.1.0.139(C00E133R3P1);HUAWEI Mate 20 Pro 9.0.0.187(C432E10R1P16), 9.0.0.188(C185E10R2P1), 9.0.0.245(C10E10R2P1), 9.0.0.266(C432E10R1P16), 9.0.0.267(C636E10R2P1), 9.0.0.268(C635E12R1P16), 9.0.0.278(C185E10R2P1); Hima-L29C 9.0.0.105(C10E9R1P16), 9.0.0.105(C185E9R1P16), 9.0.0.105(C636E9R1P16); Laya-AL00EP 9.1.0.139(C786E133R3P1); OxfordS-AN00A 10.1.0.223(C00E210R5P1); Tony-AL00B 9.1.0.257(C00E222R2P1).
Se presenta una vulnerabilidad de salto de ruta en algunos productos de Huawei. La vulnerabilidad es debido a que el software usa una entrada externa para construir un nombre de ruta que pretende identificar un archivo o directorio que se encuentra debajo de un directorio principal restringido, pero el software no comprueba apropiadamente el nombre de ruta. Una explotación con éxito podría permitir al atacante acceder a una ubicación que está fuera del directorio restringido mediante un nombre de archivo diseñado. Las versiones de producto afectadas son:HUAWEI Mate 20 versión 9.0.0.195(C01E195R2P1), versión 9.1.0.139(C00E133R3P1);HUAWEI Mate 20 Pro versión 9.0. versión 0.187(C432E10R1P16), versión 9.0.0.188(C185E10R2P1), versión 9.0.0.245(C10E10R2P1), versión 9.0.0.266(C432E10R1P16), versión 9.0.0.267(C636E10R2P1),versión 9. versión 0.0.268(C635E12R1P16), versión 9.0.0.278(C185E10R2P1); Hima-L29C versión 9.0.0.105(C10E9R1P16), versión 9.0.0.105(C185E9R1P16), versión 9.0.0. 105(C636E9R1P16); Laya-AL00EP versión 9.1.0.139(C786E133R3P1); OxfordS-AN00A versión 10.1.0.223(C00E210R5P1); Tony-AL00B versión 9.1.0.257(C00E222R2P1)
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-05 CVE Reserved
- 2021-07-13 CVE Published
- 2024-03-28 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210630-01-pathtraversal-en | 2021-07-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Mate 20 Firmware Search vendor "Huawei" for product "Mate 20 Firmware" | 9.0.0.195\(c01e195r2p1\) Search vendor "Huawei" for product "Mate 20 Firmware" and version "9.0.0.195\(c01e195r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Search vendor "Huawei" for product "Mate 20" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Firmware Search vendor "Huawei" for product "Mate 20 Firmware" | 9.1.0.139\(c00e133r3p1\) Search vendor "Huawei" for product "Mate 20 Firmware" and version "9.1.0.139\(c00e133r3p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Search vendor "Huawei" for product "Mate 20" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.187\(c432e10r1p16\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.187\(c432e10r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.188\(c185e10r2p1\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.188\(c185e10r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.245\(c10e10r2p1\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.245\(c10e10r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.266\(c432e10r1p16\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.266\(c432e10r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.267\(c636e10r2p1\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.267\(c636e10r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.268\(c635e12r1p16\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.268\(c635e12r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 20 Pro Firmware Search vendor "Huawei" for product "Mate 20 Pro Firmware" | 9.0.0.278\(c185e10r2p1\) Search vendor "Huawei" for product "Mate 20 Pro Firmware" and version "9.0.0.278\(c185e10r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 20 Pro Search vendor "Huawei" for product "Mate 20 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Hima-l29c Firmware Search vendor "Huawei" for product "Hima-l29c Firmware" | 9.0.0.105\(c10e9r1p16\) Search vendor "Huawei" for product "Hima-l29c Firmware" and version "9.0.0.105\(c10e9r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Hima-l29c Search vendor "Huawei" for product "Hima-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Hima-l29c Firmware Search vendor "Huawei" for product "Hima-l29c Firmware" | 9.0.0.105\(c185e9r1p16\) Search vendor "Huawei" for product "Hima-l29c Firmware" and version "9.0.0.105\(c185e9r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Hima-l29c Search vendor "Huawei" for product "Hima-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Hima-l29c Firmware Search vendor "Huawei" for product "Hima-l29c Firmware" | 9.0.0.105\(c636e9r1p16\) Search vendor "Huawei" for product "Hima-l29c Firmware" and version "9.0.0.105\(c636e9r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Hima-l29c Search vendor "Huawei" for product "Hima-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Laya-al00ep Firmware Search vendor "Huawei" for product "Laya-al00ep Firmware" | 9.1.0.139\(c786e133r3p1\) Search vendor "Huawei" for product "Laya-al00ep Firmware" and version "9.1.0.139\(c786e133r3p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Laya-al00ep Search vendor "Huawei" for product "Laya-al00ep" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Oxfords-an00a Firmware Search vendor "Huawei" for product "Oxfords-an00a Firmware" | 10.1.0.223\(c00e210r5p1\) Search vendor "Huawei" for product "Oxfords-an00a Firmware" and version "10.1.0.223\(c00e210r5p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Oxfords-an00a Search vendor "Huawei" for product "Oxfords-an00a" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Tony-al00b Firmware Search vendor "Huawei" for product "Tony-al00b Firmware" | 9.1.0.257\(c00e222r2p1\) Search vendor "Huawei" for product "Tony-al00b Firmware" and version "9.1.0.257\(c00e222r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Tony-al00b Search vendor "Huawei" for product "Tony-al00b" | - | - |
Safe
|