CVE-2017-10930
19.09.2017, 14:29
The ZXR10 1800-2S before v3.00.40 incorrectly restricts access to a resource from an unauthorized actor, resulting in ordinary users being able to download configuration files to steal information like administrator accounts and passwords.Enginsight
Vendor | Product | Version |
---|---|---|
zte | zxr10_1800-2s_firmware | 𝑥 < 3.00.40 |
zte | zxr10_2800-4_firmware | 𝑥 < 3.00.40 |
zte | zxr10_3800-8_firmware | 𝑥 < 3.00.40 |
zte | zxr10_160_firmware | 𝑥 < 3.00.40 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration