Vulnerabilities > ZTE

DATE CVE VULNERABILITY TITLE RISK
2023-05-30 CVE-2022-39074 Unspecified vulnerability in ZTE products
There is an unauthorized access vulnerability in some ZTE mobile phones.
local
low complexity
zte
3.3
2023-05-30 CVE-2022-39075 Unspecified vulnerability in ZTE products
There is an unauthorized access vulnerability in some ZTE mobile phones.
local
low complexity
zte
7.1
2023-01-06 CVE-2022-39072 SQL Injection vulnerability in ZTE Mf286R Firmware and Mf289D Firmware
There is a SQL injection vulnerability in Some ZTE Mobile Internet products.
network
low complexity
zte CWE-89
5.4
2023-01-06 CVE-2022-39073 Command Injection vulnerability in ZTE Mf286R Firmware Nordicmf286Rb06
There is a command injection vulnerability in ZTE MF286R, Due to insufficient validation of the input parameters, an attacker could use the vulnerability to execute arbitrary commands.
network
low complexity
zte CWE-77
critical
9.8
2022-12-12 CVE-2022-45957 Out-of-bounds Write vulnerability in ZTE Zxhn-H108Ns Firmware H108Nsv1.0.7Uzrdgr2A68
ZTE ZXHN-H108NS router with firmware version H108NSV1.0.7u_ZRD_GR2_A68 is vulnerable to remote stack buffer overflow.
network
low complexity
zte CWE-787
7.5
2022-12-05 CVE-2022-23143 Incorrect Permission Assignment for Critical Resource vulnerability in ZTE Otcp Firmware 1.19.20.02
ZTE OTCP product is impacted by a permission and access control vulnerability.
network
low complexity
zte CWE-732
6.5
2022-11-22 CVE-2022-39066 SQL Injection vulnerability in ZTE Mf286R Firmware Crlvwrgbmf286Rv1.0.0B04
There is a SQL injection vulnerability in ZTE MF286R.
network
low complexity
zte CWE-89
8.8
2022-11-22 CVE-2022-39067 Classic Buffer Overflow vulnerability in ZTE Mf286R Firmware Crlvwrgbmf286Rv1.0.0B04
There is a buffer overflow vulnerability in ZTE MF286R.
network
low complexity
zte CWE-120
6.5
2022-11-22 CVE-2022-39070 Unspecified vulnerability in ZTE Zxa10 C300M Firmware and Zxa10 C350M Firmware
There is an access control vulnerability in some ZTE PON OLT products.
network
low complexity
zte
critical
9.8
2022-11-08 CVE-2022-39069 SQL Injection vulnerability in ZTE Zaip-Aie
There is a SQL injection vulnerability in ZTE ZAIP-AIE.
network
low complexity
zte CWE-89
5.3