Vulnerability index

Browse CVEs

96 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2026-44409 There is an an information disclosure vulnerability in ZTE MU5250. Due to improper configuration of the access control mechanism, attackers can obtai… Mu5250 Firmware Mitigation only Fix from $1,9502026-05-22 MEDIUM 6.8 CVE-2026-40003 ZTE ZX297520V3 BootROM contains a vulnerability that allows arbitrary memory writes via USB. Attackers can exploit the lack of target address validat… Zx297520v3 Firmware Mitigation only Fix from $1,6002026-05-07 HIGH 8.8 CVE-2026-40002 Red Magic 11 Pro (NX809J) contains a vulnerability that allows non-privileged applications to trigger sensitive operations. The vulnerability stems f… Nubia In Nx809j Firmware Mitigation only Fix from $1,9502026-04-17 HIGH 7.5 CVE-2026-40436 The ZTE ZXEDM iEMS product has a password reset vulnerability for any user.Because the management of the cloud EMS portal does not properly control a… Zxesm Iems Mitigation only Fix from $1,9502026-04-13 HIGH 7.1 CVE-2026-34472EPSS 9% Unauthenticated credential disclosure in the wizard interface in ZTE ZXHN H188A V6.0.10P2_TE and V6.0.10P3N3_TE allows unauthenticated attackers on t… Zxhn H188a Firmware Mitigation only Fix from $1,9502026-03-30 HIGH 8.8 CVE-2025-66315 There is a configuration defect vulnerability in the version server of ZTE MF258K Pro products. Due to improper directory permission settings, an att… Mf258k Pro Firmware Mitigation only Fix from $1,9502026-01-09 HIGH 7.5 CVE-2025-46575 There is an information disclosure vulnerability in the GoldenDB database product. Attackers can exploit error messages to obtain the system's sensit… Zxcloud Goldendb No fix yet Fix from $1,9502025-04-27 MEDIUM 6.5 CVE-2025-46576 There is a Permission Management and Access Control vulnerability in the GoldenDB database product. Attackers can manipulate requests to bypass privi… Zxcloud Goldendb Mitigation only Fix from $1,6002025-04-27 HIGH 8.8 CVE-2024-22067 ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission control of the Web module interface, an authenticated… Nh8091 Firmware Mitigation only Fix from $1,9502024-11-18 HIGH 8.8 CVE-2024-22065 There is a command injection vulnerability in ZTE MF258 Pro product. Due to insufficient validation of Ping Diagnosis interface parameter, an authent… Mf258k Pro Firmware Mitigation only Fix from $1,9502024-10-29 MEDIUM 6.5 CVE-2022-39068 There is a buffer overflow vulnerability in ZTE MF296R. Due to insufficient validation of the SMS parameter length, an authenticated attacker could u… Mf296r Firmware Mitigation only Fix from $1,6002024-09-18 HIGH 8.8 CVE-2024-22069 There is a permission and access control vulnerability of ZTE's ZXV10 XT802/ET301 product.Attackers with common permissions can log in the terminal w… Zxv10 Et301 Firmware Mitigation only Fix from $1,9502024-08-08 MEDIUM 6.4 CVE-2023-25646 There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attackers with common user permiss… Zxhn H388x Firmware Mitigation only Fix from $1,6002024-06-20 MEDIUM 6.1 CVE-2023-41781 There is a Cross-site scripting (XSS)  vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack wil… Mf258 Firmware Mitigation only Fix from $1,6002024-01-10 MEDIUM 5.5 CVE-2023-41784 Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro Redmagic 8 Pro Firmware No fix yet Fix from $1,6002024-01-04 HIGH 8.8 CVE-2023-25643 There is a command injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation of multiple network parameters,… Mc801a Firmware Mitigation only Fix from $1,9502023-12-14 HIGH 7.5 CVE-2023-25644 There is a denial of service vulnerability in some ZTE mobile internet products. Due to insufficient validation of Web interface parameter, an attack… Mc801a Firmware Mitigation only Fix from $1,9502023-12-14 MEDIUM 6.5 CVE-2023-25642 There is a buffer overflow vulnerability in some ZTE mobile internet producsts. Due to insufficient validation of tcp port parameter, an authenticate… Mc801a Firmware Mitigation only Fix from $1,6002023-12-14 HIGH 8.0 CVE-2023-25651 There is a SQL injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation of SMS interface parameter, an auth… Mf833u1 Firmware Mitigation only Fix from $1,9502023-12-14 HIGH 8.8 CVE-2023-25649 There is a command injection vulnerability in a mobile internet product of ZTE. Due to insufficient validation of SET_DEVICE_LED interface parameter,… Mf286r Firmware Mitigation only Fix from $1,9502023-08-25 HIGH 7.7 CVE-2023-25645 There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application ca… Up T2 4k Firmware Mitigation only Fix from $1,9502023-06-16 CRITICAL 9.8 CVE-2022-39073 There is a command injection vulnerability in ZTE MF286R, Due to insufficient validation of the input parameters, an attacker could use the vulnerabi… Mf286r Firmware Mitigation only Fix from $2,3002023-01-06 MEDIUM 5.4 CVE-2022-39072 There is a SQL injection vulnerability in Some ZTE Mobile Internet products. Due to insufficient validation of the input parameters of the SNTP inter… Mf286r Firmware Mitigation only Fix from $1,6002023-01-06 HIGH 7.5 CVE-2022-45957EPSS 11% ZTE ZXHN-H108NS router with firmware version H108NSV1.0.7u_ZRD_GR2_A68 is vulnerable to remote stack buffer overflow. Zxhn H108ns Firmware No fix yet Fix from $1,9502022-12-12 HIGH 8.8 CVE-2022-39066EPSS 27% There is a SQL injection vulnerability in ZTE MF286R. Due to insufficient validation of the input parameters of the phonebook interface, an authentic… Mf286r Firmware Mitigation only Fix from $1,9502022-11-22 MEDIUM 6.5 CVE-2022-39067 There is a buffer overflow vulnerability in ZTE MF286R. Due to lack of input validation on parameters of the wifi interface, an authenticated attacke… Mf286r Firmware Mitigation only Fix from $1,6002022-11-22 HIGH 7.5 CVE-2022-23141 ZXMP M721 has an information leak vulnerability. Since the serial port authentication on the ZBOOT interface is not effective although it is enabled,… Zxmp M721 Firmware Mitigation only Fix from $1,9502022-07-15 HIGH 7.5 CVE-2022-23138 ZTE's MF297D product has cryptographic issues vulnerability. Due to the use of weak random values, the security of the device is reduced, and it may … Mf297d Firmware Mitigation only Fix from $1,9502022-06-09 HIGH 8.8 CVE-2022-23139 ZTE's ZXMP M721 product has a permission and access control vulnerability. Since the folder permission viewed by sftp is 666, which is inconsistent w… Zxmp M721 Firmware Mitigation only Fix from $1,9502022-05-12 MEDIUM 6.1 CVE-2022-23137 ZTE's ZXCDN product has a reflective XSS vulnerability. The attacker could modify the parameters in the content clearing request url, and when a user… Zxcdn Firmware Mitigation only Fix from $1,6002022-05-11