CVE-2026-40004

MEDIUM

openssl.cnf Privilege Escalation Vulnerability in ZTE Cloud PC Client uSmartview

Title source: cna
STIX 2.1

Description

There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud PC client uSmartview. An attacker can execute arbitrary code locally and escalate privileges.

Scores

CVSS v3 5.5
CVSS:3.1/AV:P/AC:H/PR:L/UI:R/S:C/C:H/I:L/A:N

Details

CWE
CWE-427
Status published
Products (1)
ZTE/ZXCLOUD iRAI ZXCLOUD-iRAI-ClientV7.2X
Published May 07, 2026
Tracked Since May 07, 2026