zte

194 tracked vulnerabilities.

CVE-2025-26706 MEDIUM
ZTE GoldenDB 6.1.03-6.1.03.07 - Privilege Escalation
Mar 11, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-26705 MEDIUM
ZTE GoldenDB 6.1.03-6.1.03.05 - Privilege Escalation
Mar 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-26704 MEDIUM
ZTE GoldenDB 6.1.03-6.1.03.05 - Privilege Escalation
Mar 11, 2025
CVSS 6.4
EPSS 0.00
CVE-2025-26703 MEDIUM
ZTE GoldenDB 6.1.03-6.1.03.04 - Privilege Escalation
Mar 11, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-26702 MEDIUM
ZTE GoldenDB 6.1.03-6.1.03.04 - Input Data Manipulation via Improper Input Validation
Mar 11, 2025
CVSS 4.9
EPSS 0.00
CVE-2025-26707 MEDIUM
ZTE GoldenDB <6.1.03.05 - Privilege Escalation
Mar 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-26708 MEDIUM
ZTE Link 5.4.0-5.4.9 - Unauthorized WiFi Access via Configuration Defect
Mar 07, 2025
CVSS 4.2
EPSS 0.00
CVE-2024-22063 HIGH
ZTE ZENIC ONE R58 - Command Injection
Dec 30, 2024
CVSS 7.6
EPSS 0.01
CVE-2024-22067 MEDIUM
ZTE NH8091 Firmware - Authenticated Remote Code Execution via Web Module Interface
Nov 18, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-22066 HIGH
ZTE ZXR10 ZSR V2 - Privilege Escalation
Oct 29, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-22065 MEDIUM
ZTE MF258 Pro Firmware - Authenticated OS Command Injection via Ping Diagnosis Interface
Oct 29, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-10119 CRITICAL
SECOM WRTM326 Firmware - Unauthenticated Remote Command Execution
Oct 18, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-22068 MEDIUM
ZTE ZXR10 Series Firmware < 6.00.10 - Improper Privilege Management
Oct 10, 2024
CVSS 6.0
EPSS 0.00
CVE-2024-22069 HIGH
ZTE ZXV10 XT802/ET301 - Privilege Escalation
Aug 08, 2024
CVSS 7.1
EPSS 0.00
CVE-2024-22062 MEDIUM
ZXCLOUD IRAI - Privilege Escalation
Jul 09, 2024
CVSS 6.3
EPSS 0.00
CVE-2024-22064 HIGH
ZTE ZXUN-ePDG < 5.20.20 - User Session Information Exposure via Non-Unique Cryptographic Keys
May 14, 2024
CVSS 8.3
EPSS 0.00
CVE-2023-25646 HIGH
ZTE ZXHN H388X Firmware - Unauthenticated Privilege Escalation via Serial Port Brute-Force
Jun 20, 2024
CVSS 7.1
EPSS 0.00
CVE-2023-41781 MEDIUM
ZTE MF258 Firmware - Stored Cross-Site Scripting via SMS Interface Parameter
Jan 10, 2024
CVSS 5.7
EPSS 0.00
CVE-2023-41782 LOW
ZTE ZXCLOUD iRAI < 7.23.30 - DLL Hijacking via Uncontrolled Search Path
Jan 05, 2024
CVSS 3.9
EPSS 0.00
CVE-2023-41784 MEDIUM
ZTE Red Magic 8 Pro Firmware - Improper Privilege Management
Jan 04, 2024
CVSS 6.6
EPSS 0.00
CVE-2023-41783 MEDIUM
ZTE ZXCLOUD iRAI < 7.23.32 - Command Injection
Jan 03, 2024
CVSS 4.3
EPSS 0.00
CVE-2023-41780 MEDIUM
ZTE ZXCLOUD iRAI < 7.23.32 - Unauthenticated DLL Loading Path Traversal
Jan 03, 2024
CVSS 6.4
EPSS 0.00
CVE-2023-41779 MEDIUM
ZTE ZXCLOUD iRAI < 7.23.32 - Authenticated Denial of Service via Illegal Memory Access
Jan 03, 2024
CVSS 4.4
EPSS 0.00
CVE-2023-41776 MEDIUM
ZTE ZXCLOUD iRAI < 7.23.32 - Local Privilege Escalation via Fake Process Creation
Jan 03, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-25644 MEDIUM
ZTE MC801A and MC801A1 Firmware - Denial of Service via Web Interface Parameter
Dec 14, 2023
CVSS 6.5
EPSS 0.00