zte

194 tracked vulnerabilities.

CVE-2015-8703 MEDIUM
ZTE ZXHN H108N R1A and ZXV10 W300 - Authenticated Sensitive Information Exposure via Configuration File
Dec 30, 2015
CVSS 6.5
EPSS 0.06
CVE-2015-7252 MEDIUM
ZTE ZXHN H108N R1A Firmware < ZTE.bhs.ZXHNH108NR1A.k_PE - Cross-Site Scripting via errorpage Parameter
Dec 30, 2015
CVSS 6.1
EPSS 0.30
CVE-2015-7251 CRITICAL
ZTE ZXHN H108N R1A Firmware < ZTE.bhs.ZXHNH108NR1A.k_PE - Unauthenticated Hardcoded Root Password
Dec 30, 2015
CVSS 9.8
EPSS 0.39
CVE-2015-7250 HIGH
ZTE ZXHN H108N R1A Firmware < ZTE.bhs.ZXHNH108NR1A.k_PE - Unauthenticated Path Traversal via getpage Parameter
Dec 30, 2015
CVSS 7.5
EPSS 0.20
CVE-2015-7249 MEDIUM
ZTE ZXHN H108N R1A < ZTE.bhs.ZXHNH108NR1A.k_PE - Authenticated Access Control Bypass
Dec 30, 2015
CVSS 4.9
EPSS 0.15
CVE-2015-7248 HIGH
ZTE ZXHN H108N R1A < ZTE.bhs.ZXHNH108NR1A.k_PE - Sensitive Info Exposure via cgi-bin/webproc
Dec 30, 2015
CVSS 7.5
EPSS 0.35
CVE-2014-4019 HIGH
ZTE ZXV10 W300 W300V1.0.0a_ZRD_LK - Unauthenticated Sensitive Information Exposure
Feb 20, 2020
CVSS 7.5
EPSS 0.52
CVE-2014-9184
ZTE ZXDSL 831CII - Unauthenticated Authentication Bypass via Direct CGI Request
Dec 02, 2014
EPSS 0.07
CVE-2014-9183
ZTE ZXDSL 831CII - Privilege Escalation
Dec 02, 2014
EPSS 0.05
CVE-2014-9020
ZTE ZXDSL 831 and 831CII - Cross-Site Scripting via Quick Stats Page Domainname Parameter
Nov 20, 2014
EPSS 0.00
CVE-2014-9019
ZTE ZXDSL 831CII - Cross-Site Request Forgery via adminpasswd.cgi
Nov 20, 2014
EPSS 0.00
CVE-2014-8493
ZTE ZXHN H108L Firmware 4.0.0d_ZRQ_GR4 - Unauthenticated CWMP Configuration Modification
Nov 20, 2014
EPSS 0.18
CVE-2014-4154
ZTE ZXV10 W300 Firmware W300V1.0.0a_ZRD_LK - Unprotected Credential Exposure via tc2wanfun.js
Jul 16, 2014
EPSS 0.09
CVE-2014-4018
ZTE ZXV10 W300 Firmware W300V1.0.0a_ZRD_LK - Default Password for Admin Account
Jul 16, 2014
EPSS 0.06
CVE-2014-4155
ZTE ZXV10 W300 Firmware W300V1.0.0a_ZRD_LK - Cross-Site Request Forgery via Admin Password Change
Jun 19, 2014
EPSS 0.00
CVE-2014-2321 NUCLEI
ZTE F460 and F660 - Unauthenticated Remote Command Execution via web_shell_cmd.gch
Mar 11, 2014
EPSS 0.92
CVE-2014-0329
ZTE ZXV10 W300 2.1.0 - Info Disclosure
Feb 04, 2014
EPSS 0.25
CVE-2012-4746
ZTE ZXDSL 831IIV7.5.0a_Z29_OV - CSRF
Aug 31, 2012
EPSS 0.01
CVE-2012-2949
ZTE sync_agent - Privilege Escalation
May 29, 2012
EPSS 0.02