• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2019-3419
Zte, Zxmp M721 Dx Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2021-07-21
N/A
5.7 MEDIUM
A security vulnerability exists in a management port in the version of ZTE's ZXMP M721V3.10P01B10_M2NCP. An attacker could exploit this vulnerability to build a link to the device and send specific packets to cause a denial of service.
CVE-2019-3418
Zte, Zxhn F670 Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-10-09
N/A
5.4 MEDIUM
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by cross-site scripting vulnerability (XSS). Due to incomplete input validation, an authorized user can exploit this vulnerability to execute malicious scripts.
CVE-2019-3417
Zte, Zxhn F670 Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2020-08-24
N/A
8.8 HIGH
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by command injection vulnerability. Due to insufficient parameter validation check, an authorized user can exploit this vulnerability to take control of user router system.
CVE-2019-3416
Zte, Zxv10 B860a Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-10-09
N/A
9.8 CRITICAL
All versions up to V81511329.1008 of ZTE ZXV10 B860A products are impacted by input validation vulnerability. Due to input validation, unauthorized users can take advantage of this vulnerability to control the user terminal system.
CVE-2019-3415
Zte, Zxmw Nr8000 Firmware
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-07-17
N/A
5.7 MEDIUM
ZTE MW NR8000V2.4.4.03 and NR8000V2.4.4.04 are impacted by path traversal vulnerability. Due to path traversal,users can download any files.
CVE-2019-3414
Otcp Firmware, Zte
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-07-25
N/A
4.8 MEDIUM
All versions up to V1.19.20.02 of ZTE OTCP product are impacted by XSS vulnerability. Due to XSS, when an attacker invokes the security management to obtain the resources of the specified operation code owned by a user, the malicious script code could be transmitted in the parameter. If the front end does not process the returned result from the interface properly, the malicious script may be executed and the user cookie or other important information may be stolen.
CVE-2019-3413
Netnumen Dap Firmware, Zte
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-10-09
N/A
5.4 MEDIUM
All versions up to V20.18.40.R7.B1of ZTE NetNumen DAP product have an XSS vulnerability. Due to the lack of correct validation of client data in WEB applications, which results in users being hijacked.
CVE-2019-3412
Mf920 Firmware, Zte
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2020-08-24
N/A
9.8 CRITICAL
All versions up to BD_R218V2.4 of ZTE MF920 product are impacted by command execution vulnerability. Due to some interfaces do not adequately verify parameters, an attacker can execute arbitrary commands through specific interfaces.
CVE-2019-3411
Mf920 Firmware, Zte
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2022-04-18
N/A
7.5 HIGH
All versions up to BD_R218V2.4 of ZTE MF920 product are impacted by information leak vulnerability. Due to some interfaces can obtain the WebUI login password without login, an attacker can exploit the vulnerability to obtain sensitive information about the affected components.
CVE-2019-3410
Wf820+ Lte Outdoor Cpe, Wf820+ Lte Outdoor Cpe Firmware, Zte
Wf820+_lte_outdoor_cpe_firmware, Wf820+_lte_outdoor_cpe, Mf920_firmware, Mf920, Netnumen_dap_firmware, Netnumen_dap, Otcp_firmware, Otcp, Zxmw_nr8000_firmware, Zxmw_nr8000
2019-10-09
N/A
8.8 HIGH
All versions up to UKBB_WF820+_1.0.0B06 of ZTE WF820+ LTE Outdoor CPE product are impacted by Cross-Site Request Forgery vulnerability,which stems from the fact that WEB applications do not adequately verify whether requests come from trusted users. An attacker can exploit this vulnerability to send unexpected requests to the server through the affected client.
« Previous 1 … 5,558 5,559 5,560 5,561 5,562 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE