• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2019-3429
2019-12-30
N/A
5.3 MEDIUM
All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have a file reading vulnerability. Attackers could obtain log file information without authorization, causing the disclosure of sensitive information.
CVE-2019-3428
Zte, Zxcdn Iamweb Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2022-03-31
N/A
6.5 MEDIUM
The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a configuration error vulnerability. An attacker could directly access the management portal in HTTP, resulting in users’ information leakage.
CVE-2019-3427
Zte, Zxcdn Iamweb Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2020-08-24
N/A
7.2 HIGH
The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a code injection vulnerability. An attacker could exploit the vulnerability to inject malicious code into the management page, resulting in users’ information leakage.
CVE-2019-3426
Zte, Zxupn-9000e Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-11-14
N/A
8.8 HIGH
The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by the input validation vulnerability. An attacker could exploit this vulnerability for unauthorized operations.
CVE-2019-3425
Zte, Zxupn-9000e Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2020-08-24
N/A
8.8 HIGH
The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by vulnerability of permission and access control. An attacker could exploit this vulnerability to directly reset or change passwords of other accounts.
CVE-2019-3424
C520v21 Firmware, Ztehome
C520v21_firmware, C520v21
2020-08-24
N/A
8.2 HIGH
authentication issues vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An attacker can automatically obtain access to web services from the authorized browser of the same computer and perform operations.
CVE-2019-3423
C520v21 Firmware, Ztehome
C520v21_firmware, C520v21
2019-11-20
N/A
5.3 MEDIUM
permission and access control vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An attacker can construct a URL for directory traversal and access to other unauthorized files or resources.
CVE-2019-3422
Mf910s Firmware, Zte
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2020-08-28
N/A
6.2 MEDIUM
The Sec Consult Security Lab reported an information disclosure vulnerability in MF910S product to ZTE PSIRT in October 2019. Through the analysis of related product team, the information disclosure vulnerability is confirmed. The MF910S product's one-click upgrade tool can obtain the Telnet remote login password in the reverse way. If Telnet is opened, the attacker can remotely log in to the device through the cracked password, resulting in information leakage. The MF910S was end of service on October 23, 2019, ZTE recommends users to choose new products for the purpose of better security.
CVE-2019-3421
Ztw, Zx297520v3 Firmware
Zx297520v3_firmware, Zx297520v3
2020-08-24
N/A
8 HIGH
The 7520V3V1.0.0B09P27 version, and all earlier versions of ZTE product ZX297520V3 are impacted by a Command Injection vulnerability. Unauthorized users can exploit this vulnerability to control the user terminal system.
CVE-2019-3420
Zte, Zxhn H108n Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2022-03-31
N/A
6.5 MEDIUM
All versions up to V2.5.0_EG1T5_TED of ZTE ZXHN H108N product are impacted by an information leak vulnerability. An attacker could exploit the vulnerability to obtain sensitive information and perform unauthorized operations.
« Previous 1 … 5,557 5,558 5,559 5,560 5,561 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE