There is a command injection vulnerability in S12700 V200R019C00SPC500, S2700 V200R019C00SPC500, S5700 V200R019C00SPC500, S6700 V200R019C00SPC500 and S7700 V200R019C00SPC500. A module does not verify specific input sufficiently. Attackers can exploit this vulnerability by sending malicious parameters to inject command. This can compromise normal service.
2021-06-22T19:15:07.953
2024-11-21T05:50:00.370
Modified
CVSSv3.1: 7.2 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | huawei | s12700_firmware | v200r019c00spc500 | Yes |
Hardware | huawei | s12700 | - | No |
Operating System | huawei | s2700_firmware | v200r019c00spc500 | Yes |
Hardware | huawei | s2700 | - | No |
Operating System | huawei | s5700_firmware | v200r019c00spc500 | Yes |
Hardware | huawei | s5700 | - | No |
Operating System | huawei | s6700_firmware | v200r019c00spc500 | Yes |
Hardware | huawei | s6700 | - | No |
Operating System | huawei | s7700_firmware | v200r019c00spc500 | Yes |
Hardware | huawei | s7700 | - | No |