There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations with improper permissions. Affected product versions include: ManageOne versions 8.0.0, 8.0.1.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210203-01-manageone-en | Vendor Advisory |
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210203-01-manageone-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210203-01-manageone-en - Vendor Advisory |
Information
Published : 2021-03-22 19:15
Updated : 2024-11-21 05:49
NVD link : CVE-2021-22311
Mitre link : CVE-2021-22311
CVE.ORG link : CVE-2021-22311
JSON object : View
Products Affected
huawei
- manageone
CWE
CWE-276
Incorrect Default Permissions