Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hm88-xqxr-4jwr

Опубликовано: 20 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attackers with common user permissions can use this vulnerability to obtain elevated permissions on the affected device by performing specific operations.

There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attackers with common user permissions can use this vulnerability to obtain elevated permissions on the affected device by performing specific operations.

EPSS

Процентиль: 27%
0.00098
Низкий

7.1 High

CVSS3

Дефекты

CWE-281

Связанные уязвимости

CVSS3: 7.1
nvd
больше 1 года назад

There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attackers with common user permissions can use this vulnerability to obtain elevated permissions on the affected device by performing specific operations.

CVSS3: 7.1
fstec
больше 1 года назад

Уязвимость микропрограммного обеспечения маршрутизатора ZTE ZXHN H388X, связанная с неправильным сохранением разрешений, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 27%
0.00098
Низкий

7.1 High

CVSS3

Дефекты

CWE-281