Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wrgw-4jfp-j4x5

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote authenticated users to bypass intended access restrictions via a modified request, as demonstrated by leveraging the support account to change a password via a cgi-bin/webproc accountpsd action.

ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote authenticated users to bypass intended access restrictions via a modified request, as demonstrated by leveraging the support account to change a password via a cgi-bin/webproc accountpsd action.

EPSS

Процентиль: 93%
0.11222
Средний

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.9
nvd
около 10 лет назад

ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote authenticated users to bypass intended access restrictions via a modified request, as demonstrated by leveraging the support account to change a password via a cgi-bin/webproc accountpsd action.

EPSS

Процентиль: 93%
0.11222
Средний

4.9 Medium

CVSS3