Описание
There is an access control vulnerability in some ZTE PON OLT products. Due to improper access control settings, remote attackers could use the vulnerability to log in to the device and execute any operation.
Уязвимые конфигурации
Конфигурация 1Версия от 2.1.0 (включая) до 2.1.0xgp002.4 (исключая)
Одновременно
cpe:2.3:o:zte:zxa10_c350m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:zte:zxa10_c350m:-:*:*:*:*:*:*:*
Конфигурация 2Версия от 2.1.0 (включая) до 2.1.0xgp002.4 (исключая)
Одновременно
cpe:2.3:o:zte:zxa10_c300m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:zte:zxa10_c300m:-:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00752
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-Other
CWE-284
Связанные уязвимости
CVSS3: 9.8
github
около 3 лет назад
There is an access control vulnerability in some ZTE PON OLT products. Due to improper access control settings, remote attackers could use the vulnerability to log in to the device and execute any operation.
EPSS
Процентиль: 73%
0.00752
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-Other
CWE-284