Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j3rv-rh4f-4rf6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A ZTE product has an information leak vulnerability. Due to improper permission settings, an attacker with ordinary user permissions could exploit this vulnerability to obtain some sensitive user information through the wizard page without authentication. This affects ZXHN H168N all versions up to V3.5.0_EG1T4_TE.

A ZTE product has an information leak vulnerability. Due to improper permission settings, an attacker with ordinary user permissions could exploit this vulnerability to obtain some sensitive user information through the wizard page without authentication. This affects ZXHN H168N all versions up to V3.5.0_EG1T4_TE.

EPSS

Процентиль: 36%
0.00148
Низкий

Дефекты

CWE-281

Связанные уязвимости

CVSS3: 6.5
nvd
больше 4 лет назад

A ZTE product has an information leak vulnerability. Due to improper permission settings, an attacker with ordinary user permissions could exploit this vulnerability to obtain some sensitive user information through the wizard page without authentication. This affects ZXHN H168N all versions up to V3.5.0_EG1T4_TE.

EPSS

Процентиль: 36%
0.00148
Низкий

Дефекты

CWE-281