Show filters
248 Total Results
Displaying 111-120 of 248
Sort by:
Attacker Value
Unknown

CVE-2019-3430

Disclosure Date: December 23, 2019 (last updated November 27, 2024)
All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have an information disclosure vulnerability. Attackers could use this vulnerability to collect data information and damage the system.
Attacker Value
Unknown

CVE-2019-3427

Disclosure Date: November 22, 2019 (last updated November 27, 2024)
The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a code injection vulnerability. An attacker could exploit the vulnerability to inject malicious code into the management page, resulting in users’ information leakage.
Attacker Value
Unknown

CVE-2019-3428

Disclosure Date: November 22, 2019 (last updated November 27, 2024)
The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a configuration error vulnerability. An attacker could directly access the management portal in HTTP, resulting in users’ information leakage.
Attacker Value
Unknown

CVE-2019-3423

Disclosure Date: November 18, 2019 (last updated November 27, 2024)
permission and access control vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An attacker can construct a URL for directory traversal and access to other unauthorized files or resources.
Attacker Value
Unknown

CVE-2019-3424

Disclosure Date: November 18, 2019 (last updated November 27, 2024)
authentication issues vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An attacker can automatically obtain access to web services from the authorized browser of the same computer and perform operations.
Attacker Value
Unknown

CVE-2019-3420

Disclosure Date: November 13, 2019 (last updated November 27, 2024)
All versions up to V2.5.0_EG1T5_TED of ZTE ZXHN H108N product are impacted by an information leak vulnerability. An attacker could exploit the vulnerability to obtain sensitive information and perform unauthorized operations.
Attacker Value
Unknown

CVE-2019-3426

Disclosure Date: November 08, 2019 (last updated November 27, 2024)
The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by the input validation vulnerability. An attacker could exploit this vulnerability for unauthorized operations.
Attacker Value
Unknown

CVE-2019-3425

Disclosure Date: November 08, 2019 (last updated November 27, 2024)
The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by vulnerability of permission and access control. An attacker could exploit this vulnerability to directly reset or change passwords of other accounts.
Attacker Value
Unknown

CVE-2019-3422

Disclosure Date: November 07, 2019 (last updated November 27, 2024)
The Sec Consult Security Lab reported an information disclosure vulnerability in MF910S product to ZTE PSIRT in October 2019. Through the analysis of related product team, the information disclosure vulnerability is confirmed. The MF910S product's one-click upgrade tool can obtain the Telnet remote login password in the reverse way. If Telnet is opened, the attacker can remotely log in to the device through the cracked password, resulting in information leakage. The MF910S was end of service on October 23, 2019, ZTE recommends users to choose new products for the purpose of better security.
Attacker Value
Unknown

CVE-2019-3419

Disclosure Date: October 31, 2019 (last updated November 27, 2024)
A security vulnerability exists in a management port in the version of ZTE's ZXMP M721V3.10P01B10_M2NCP. An attacker could exploit this vulnerability to build a link to the device and send specific packets to cause a denial of service.