Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-21735

Опубликовано: 10 июн. 2021
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

A ZTE product has an information leak vulnerability. Due to improper permission settings, an attacker with ordinary user permissions could exploit this vulnerability to obtain some sensitive user information through the wizard page without authentication. This affects ZXHN H168N all versions up to V3.5.0_EG1T4_TE.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:zte:zxhn_h168n_firmware:*:*:*:*:*:*:*:*
Версия до 3.5.0_eg1t4_te (включая)
cpe:2.3:h:zte:zxhn_h168n:-:*:*:*:*:*:*:*

EPSS

Процентиль: 36%
0.00148
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-281

Связанные уязвимости

github
больше 3 лет назад

A ZTE product has an information leak vulnerability. Due to improper permission settings, an attacker with ordinary user permissions could exploit this vulnerability to obtain some sensitive user information through the wizard page without authentication. This affects ZXHN H168N all versions up to V3.5.0_EG1T4_TE.

EPSS

Процентиль: 36%
0.00148
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-281