Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-22378

Опубликовано: 22 июн. 2021
Источник: nvd
CVSS3: 5.3
CVSS2: 3.5
EPSS Низкий

Описание

There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be operated by another thread that is operating concurrently. Successful exploit may cause the affected device abnormal.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:huawei:ecns280_td_firmware:v100r005c00:*:*:*:*:*:*:*
cpe:2.3:o:huawei:ecns280_td_firmware:v100r005c10:*:*:*:*:*:*:*
cpe:2.3:h:huawei:ecns280_td:-:*:*:*:*:*:*:*

EPSS

Процентиль: 33%
0.00135
Низкий

5.3 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-362

Связанные уязвимости

github
больше 3 лет назад

There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be operated by another thread that is operating concurrently. Successful exploit may cause the affected device abnormal.

EPSS

Процентиль: 33%
0.00135
Низкий

5.3 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-362