CVE-2015-7258
HIGHZTE Zxv10 W300 Firmware - Credentials Management
Title source: ruleDescription
ZTE ADSL ZXV10 W300 modems W300V2.1.0f_ER7_PE_O57 and W300V2.1.0h_ER7_PE_O57 allow remote authenticated users to obtain user passwords by displaying user information in a Telnet connection.
Exploits (1)
References (4)
Scores
CVSS v3
8.8
EPSS
0.3259
EPSS Percentile
96.8%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-255
Status
draft
Affected Products (2)
zte/zxv10_w300_firmware
zte/zxv10_w300_firmware
Timeline
Published
Aug 24, 2017
Tracked Since
Feb 18, 2026