cbcvebase.
CVE-2021-22365
published 2021-06-22

CVE-2021-22365: There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A local attacker can exploit this…

PriorityP48low3.3CVSS 3.1
AVLACLPRLUINSUCNINAL
EPSS
0.15%
4.5th percentile
There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A local attacker can exploit this vulnerability by sending specific message to the target device. Due to insufficient validation of internal message, successful exploit may cause the process and the service abnormal.

Affected

4 ranges
VendorProductVersion rangeFixed in
huaweiese620x_vess_firmware
huaweiese620x_vess_firmware
huaweiese620x_vess_firmware
huaweiese620x_vess_firmware

CVSS provenance

nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.