PT-2022-4288 · Huawei · Huawei Jad-Al50

Published

2022-08-19

·

Updated

2025-05-28

·

CVE-2021-46834

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Huawei JAD-AL50 version 102.0.0.225(C00E220R3P4)
Description A permission bypass issue in Huawei's cross-device task management could allow an attacker to access certain resources on the attacked devices. This is related to insecure privilege management, which could enable an attacker to disclose protected information.
Recommendations For Huawei JAD-AL50 version 102.0.0.225(C00E220R3P4), at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Improper Privilege Management

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

BDU:2022-05142
CVE-2021-46834

Affected Products

Huawei Jad-Al50