There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device. Successful exploit may cause an information leak. Affected product versions include: NIP6300 versions V500R001C00,V500R001C20,V500R001C30;NIP6600 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6300 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6500 versions V500R001C00,V500R001C20,V500R001C30;Secospace USG6600 versions V500R001C00,V500R001C20,V500R001C30,V500R001C50,V500R001C60,V500R001C80;USG9500 versions V500R005C00,V500R005C10.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210203-01-plaintextlog-en | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: huawei
Published: 2021-03-22T18:38:09
Updated: 2021-03-22T18:38:09
Reserved: 2021-01-05T00:00:00
Link: CVE-2021-22310
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-03-22T19:15:11.773
Modified: 2021-03-26T19:45:36.907
Link: CVE-2021-22310
JSON object: View
Redhat Information
No data.
CWE