Vulnerabilities > CVE-2021-22439 - Deserialization of Untrusted Data vulnerability in Huawei Anyoffice V200R006C10

047910
CVSS 8.1 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
high complexity
huawei
CWE-502

Summary

There is a deserialization vulnerability in Huawei AnyOffice V200R006C10. An attacker can construct a specific request to exploit this vulnerability. Successfully exploiting this vulnerability, the attacker can execute remote malicious code injection and to control the device.

Vulnerable Configurations

Part Description Count
Application
Huawei
1

Common Weakness Enumeration (CWE)