Vulnerabilities > ZTE > Nr8950 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-09-28 CVE-2017-10932 Deserialization of Untrusted Data vulnerability in ZTE products
All versions prior to V12.17.20 of the ZTE Microwave NR8000 series products - NR8120, NR8120A, NR8120, NR8150, NR8250, NR8000 TR and NR8950 are the applications of C/S architecture using the Java RMI service in which the servers use the Apache Commons Collections (ACC) library that may result in Java deserialization vulnerabilities.
network
low complexity
zte CWE-502
critical
10.0