huawei atune CVE-2021-33658 is a vulnerability in Huawei Atune
Published on March 11, 2022

atune before 0.3-0.8 log in as a local user and run the curl command to access the local atune url interface to escalate the local privilege or modify any file. Authentication is not forcibly enabled in the default configuration.

NVD


Products Associated with CVE-2021-33658

Want to know whenever a new CVE is published for Huawei Atune? stack.watch will email you.

 

Affected Versions

openEuler atune Version 0.3-0.8 is affected by CVE-2021-33658

Exploit Probability

EPSS
0.02%
Percentile
5.39%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.