The laser command injection vulnerability exists on AIS-BW80H-00 versions earlier than AIS-BW80H-00 9.0.3.4(H100SP13C00). The devices cannot effectively defend against external malicious interference. Attackers need the device to be visually exploitable and successful triggering of this vulnerability could execute voice commands on the device.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20220126-01-df75863e-en | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: huawei
Published: 2022-02-25T18:11:14
Updated: 2022-02-25T18:11:14
Reserved: 2021-08-23T00:00:00
Link: CVE-2021-40043
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-02-25T19:15:12.397
Modified: 2022-03-08T15:10:32.207
Link: CVE-2021-40043
JSON object: View
Redhat Information
No data.
CWE