CVE Database
/

CVE-2021-22338

Back to search

CVE-2021-22338

Published: Jun 29, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

There is an XXE injection vulnerability in eCNS280 V100R005C00 and V100R005C10. A module does not perform the strict operation to the input XML message. Attacker can send specific message to exploit this vulnerability, leading to the module denial of service.

VendorProductVersions

n/a

eCNS280

affected
V100R005C00,V100R005C10

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now