cvelist/2021/22xxx/CVE-2021-22449.json

62 lines
2.0 KiB
JSON
Raw Normal View History

2021-01-05 18:02:34 +00:00
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2021-22449",
2021-08-23 20:00:50 +00:00
"ASSIGNER": "psirt@huawei.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Elf-G10HN",
"version": {
"version_data": [
{
"version_value": "1.0.0.608"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Logic vulnerability"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210630-01-logic-en",
"url": "https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210630-01-logic-en"
}
]
2021-01-05 18:02:34 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2021-08-23 20:00:50 +00:00
"value": "There is a logic vulnerability in Elf-G10HN 1.0.0.608. An unauthenticated attacker could perform specific operations to exploit this vulnerability. Due to insufficient security design, successful exploit could allow an attacker to add users to be friends without prompting in the target device."
2021-01-05 18:02:34 +00:00
}
]
}
}