Vulnerabilities > ZTE > Zxcdn SNS Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-25 CVE-2017-10936 SQL Injection vulnerability in ZTE Zxcdn-Sns Firmware
SQL injection vulnerability in all versions prior to V4.01.01 of the ZTE ZXCDN-SNS product allows remote attackers to execute arbitrary SQL commands via the aoData parameter, resulting in the disclosure of database information.
network
low complexity
zte CWE-89
7.5