zte

194 tracked vulnerabilities.

CVE-2021-21729 MEDIUM
ZTE ZXHN H168N and H108N Firmware - Cross-Site Request Forgery via Missing CSRF Token
Apr 13, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-21728 MEDIUM
ZTE ZXA10 C300M Firmware < 4.5 - Unauthenticated Denial of Service via Open Port Packet Flood
Apr 09, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-21727 HIGH
ZTE ZXHN F623 Firmware < 6.0.0p3t34 - Denial of Service via IPv6 Packet Amplification
Mar 29, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-21726 LOW
ZTE ZXONE 9700, 8700, and 19700 Firmware - Denial of Service via Diagnostic Function Parameter Injection
Mar 12, 2021
CVSS 2.3
EPSS 0.00
CVE-2021-21725 MEDIUM
ZTE ZXHN H196Q V9.1.0C2 - Authenticated Directory Traversal and Information Disclosure
Mar 05, 2021
CVSS 5.7
EPSS 0.00
CVE-2021-21724 MEDIUM
ZTE ZXR10 8900E Firmware < 3.03.20r2b30p1 - Memory Leak via Optical Signal Attenuation
Feb 26, 2021
CVSS 4.4
EPSS 0.00
CVE-2021-21723 HIGH
ZTE ZXR10 9904/9908/9916/9904-S/9908-S Firmware < V1.01.10.B12 - Denial of Service via Memory Leak
Jan 26, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-21722 MEDIUM
ZTE ZXV10 B860A Firmware V2.1-T_V0032.1.1.04_jiangsuTelecom - Sensitive Information Exposure via Log File
Jan 14, 2021
CVSS 4.4
EPSS 0.00
CVE-2020-6882 HIGH
ZTE ZXHN E8810/E8820/E8822 Firmware - Information Disclosure via Hard-coded MQTT Credentials
Dec 21, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-6881 HIGH
ZTE ZXHN E8810/E8820/E8822 Firmware - Denial of Service via MQTT Message Handling
Dec 21, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-6880 CRITICAL
ZTE ZXV10 W908 Firmware < mips_a_1022ipv6r3t6p7y20 - Unauthenticated SQL Injection
Dec 01, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-6879 LOW
ZTE ZXHN Z500 and F670L Firmware - Parameter Tampering via Static Routing Rule Configuration
Nov 19, 2020
CVSS 3.5
EPSS 0.00
CVE-2020-6877 HIGH
ZTE ZXA10 eODN Firmware V2.3P2T1 - Information Disclosure
Nov 05, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-6876 MEDIUM
ZTE eVDC ZXCLOUD-iROSV6.03.04 - Stored Cross-Site Scripting in WEB Module
Oct 26, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-6875 CRITICAL
ZTE ZXONE 19700 SNPE Firmware - Unauthenticated Access Control Bypass
Oct 05, 2020
CVSS 9.8
EPSS 0.00
CVE-2020-6874 CRITICAL
ZTE ZXIPTV Firmware - Insufficiently Protected Credentials
Sep 01, 2020
CVSS 9.1
EPSS 0.00
CVE-2020-6873 MEDIUM
ZTE ZXR10 2800-4_ALMPUFB(LOW) < 3.00.40 - Denial of Service via HTTP Packet Handling
Sep 01, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-6872 MEDIUM
ZTE R5300G4/R5500G4/R8500G4 Firmware - Stored Cross-Site Scripting via Login Page
Jul 20, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-6871 CRITICAL
ZTE R5300G4/R5500G4/R8500G4 Firmware - Authentication Bypass
Jul 20, 2020
CVSS 9.8
EPSS 0.00
CVE-2020-6870 HIGH
ZTE NetNumen U31 R20 V12.17.20T115 - Unauthenticated FTP Server Password Tampering and Arbitrary File Manipulation
Jun 24, 2020
CVSS 8.0
EPSS 0.00
CVE-2020-6869 HIGH
ZTEMarket APK < 10.06 - Information Leak via Activity Component Exposure
Jun 17, 2020
CVSS 8.1
EPSS 0.00
CVE-2020-12695 HIGH
Open Connectivity Foundation UPnP <2020-04-17 - SSRF
Jun 08, 2020
CVSS 7.5
EPSS 0.04
CVE-2020-6868 MEDIUM
ZTE F680 Firmware V9.0.10P1N6 - Input Validation Bypass via HTTP Proxy
Jun 01, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-6867 MEDIUM
ZTE ZENIC ONE R22b V16.19.10P02SP002 and V16.19.10P02SP005 - Memory Overflow via RPC Calls
Apr 30, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-6866 MEDIUM
ZXCTN 6500 V2.10.00R3B87 - Denial of Service via Specific Command
Apr 30, 2020
CVSS 4.9
EPSS 0.00