Vulnerabilities > ZTE

DATE CVE VULNERABILITY TITLE RISK
2020-07-20 CVE-2020-6871 Improper Authentication vulnerability in ZTE products
The server management software module of ZTE has an authentication issue vulnerability, which allows users to skip the authentication of the server and execute some commands for high-level users.
network
low complexity
zte CWE-287
critical
9.8
2020-06-24 CVE-2020-6870 Unspecified vulnerability in ZTE Netnumen U31 R10 Firmware V12.17.20T115
The version V12.17.20T115 of ZTE U31R20 product is impacted by a design error vulnerability.
low complexity
zte
8.0
2020-06-17 CVE-2020-6869 Unspecified vulnerability in ZTE Ztemarket APK 10.06
All versions up to 10.06 of ZTEMarket APK are impacted by an information leak vulnerability.
network
low complexity
zte
8.1
2020-06-08 CVE-2020-12695 Incorrect Default Permissions vulnerability in multiple products
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
7.5
2020-06-01 CVE-2020-6868 Improper Input Validation vulnerability in ZTE F680 Firmware Zxhnf680V9.0.10P1N6
There is an input validation vulnerability in a PON terminal product of ZTE, which supports the creation of WAN connections through WEB management pages.
low complexity
zte CWE-20
6.5
2020-04-30 CVE-2020-6867 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in ZTE Zenic ONE R22B 16.19.10P02Sp002/6.19.10P02Sp005
ZTE's SDON controller is impacted by the resource management error vulnerability.
local
low complexity
zte CWE-119
5.5
2020-04-30 CVE-2020-6866 Unspecified vulnerability in ZTE Zxctn 6500 Firmware 2.10.00R3B87
A ZTE product is impacted by a resource management error vulnerability.
network
low complexity
zte
4.9
2020-04-30 CVE-2020-6865 Information Exposure vulnerability in ZTE Oscp 16.19.10/16.19.20
ZTE SDN controller platform is impacted by an information leakage vulnerability.
network
low complexity
zte CWE-200
6.5
2020-02-27 CVE-2020-6864 Unspecified vulnerability in ZTE E8820V3 Firmware 3.1.0.1000.4
ZTE E8820V3 router product is impacted by an information leak vulnerability.
low complexity
zte
6.5
2020-02-27 CVE-2020-6863 Unspecified vulnerability in ZTE E8820V3 Firmware 3.1.0.1000.4
ZTE E8820V3 router product is impacted by a permission and access control vulnerability.
low complexity
zte
6.5