Security readout for executives and security teams
Plain-English summary
This CVE describes a denial-of-service flaw in specific Huawei CloudEngine switches. A crafted packet can cause some services to behave abnormally. The public bundle does not provide CVSS scoring, detailed impact, or active exploitation evidence.
Executive priority
Treat this as a targeted network infrastructure availability risk. Prioritize validation in environments using the named Huawei CloudEngine models, but avoid emergency escalation absent evidence of exposure or active exploitation.
Technical view
CVE-2021-22328 affects Huawei CloudEngine 12800, 5800, 6800, and 7800 devices running V200R005C00SPC800. The issue is improper packet handling in specific scenarios, allowing a crafted packet to disrupt some services.
Likely exposure
Exposure appears limited to the listed Huawei CloudEngine models on version V200R005C00SPC800. Organizations without those products or versions are not indicated as affected by the provided sources.
Exploitation context
The source bundle says exploitation requires a crafted packet in specific scenarios. It is not listed as KEV, and the provided sources do not claim active exploitation or public weaponization.
Researcher notes
Evidence is sparse: no CVSS, CWE, exploit status, packet details, or fixed version is included in the provided bundle. Analysis should stay anchored to affected model/version matching and Huawei PSIRT guidance.
Mitigation direction
- Inventory Huawei CloudEngine devices and identify exact software versions.
- Review Huawei PSIRT advisory for vendor-approved fixes or mitigations.
- Prioritize vendor upgrade guidance for devices on V200R005C00SPC800.
- Limit untrusted packet reachability where operationally feasible.
- Contact Huawei support if affected release guidance is unclear.
Validation and detection
- Check whether CloudEngine 12800, 5800, 6800, or 7800 devices are present.
- Verify whether any listed devices run V200R005C00SPC800.
- Review service health for unexplained abnormal behavior on affected devices.
- Track Huawei PSIRT guidance for remediation status and version details.
Public sources used
Generated from the cited source records. This long-tail analysis has not been individually reviewed by a named human.
Conservative CVE-to-ATT&CK context
These mappings and lookup hints may be relevant to the vulnerability behavior, CWE, affected product, or exposure path. Glexia-inferred context is not an official MITRE, ATT&CK, CWE, or CVE Program mapping.
ATT&CK lookup starting points
Use these exact CWE pages and searches to review the Glexia ATT&CK library from this CVE's weakness and description context.
CVE-2021-22328 mapping review
Open the CVE-to-ATT&CK bridge for reviewed, inferred, or future official mappings tied to this CVE.
Open ATT&CK lookup- Severity
- Unknown
- CVSS
- Not scored
- Known Exploited
- No
- Published
CNA and ADP enrichment extracted from CVE v5
These fields come from the CVE record and ADP containers, not from Glexia's Take. They preserve time-varying source decisions such as CISA SSVC, KEV status, CVSS metrics, and provider references.
CVSS and timeline data
No CVSS vectors or timeline events were available in the normalized CVE source material.
Source materials
- CVE List V5 sourceCVE List V5
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210407-01-dos-enCVE reference · x_refsource_MISC
Products and packages named in the record
CWE details
CWE links open Glexia weakness intelligence pages with official CWE context, developer remediation guidance, and related CVE mappings.
