Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.1
CVE-2023-41781
There is a Cross-site scripting (XSS) vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack wil…
Mf258 Firmware
Mitigation only
MEDIUM 5.5
CVE-2023-41784
Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro
Redmagic 8 Pro Firmware
No fix yet
HIGH 7.8
CVE-2023-41780
There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the program failed to adequately validate the user's input, an attacker co…
Zxcloud Irai
7.23.32+
HIGH 7.8
CVE-2023-41783
There is a command injection vulnerability of ZTE's ZXCLOUD iRAI. Due to the program failed to adequately validate the user's input, an attacker co…
Zxcloud Irai
7.23.32+
MEDIUM 5.5
CVE-2023-41779
There is an illegal memory access vulnerability of ZTE's ZXCLOUD iRAI product.When the vulnerability is exploited by an attacker with the common user…
Zxcloud Irai
7.23.32+
HIGH 7.8
CVE-2023-41776
There is a local privilege escalation vulnerability of ZTE's ZXCLOUD iRAI.Attackers with regular user privileges can create a fake process, and to es…
Zxcloud Irai
7.23.32+
HIGH 8.8
CVE-2023-25643
There is a command injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation of multiple network parameters,…
Mc801a Firmware
Mitigation only
HIGH 7.5
CVE-2023-25644
There is a denial of service vulnerability in some ZTE mobile internet products. Due to insufficient validation of Web interface parameter, an attack…
Mc801a Firmware
Mitigation only
MEDIUM 6.5
CVE-2023-25642
There is a buffer overflow vulnerability in some ZTE mobile internet producsts. Due to insufficient validation of tcp port parameter, an authenticate…
Mc801a Firmware
Mitigation only
HIGH 8.0
CVE-2023-25651
There is a SQL injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation of SMS interface parameter, an auth…
Mf833u1 Firmware
Mitigation only
HIGH 7.8
CVE-2023-25648
There is a weak folder permission vulnerability in ZTE's ZXCLOUD iRAI product. Due to weak folder permission, an attacker with ordinary user privileg…
Zxcloud Irai
7.23.21+
MEDIUM 6.5
CVE-2023-25650
There is an arbitrary file download vulnerability in ZXCLOUD iRAI. Since the backend does not escape special strings or restrict paths, an attacker w…
Zxcloud Irai
7.23.30+
HIGH 8.8
CVE-2023-25649
There is a command injection vulnerability in a mobile internet product of ZTE. Due to insufficient validation of SET_DEVICE_LED interface parameter,…
Mf286r Firmware
Mitigation only
HIGH 7.7
CVE-2023-25645
There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application ca…
Up T2 4k Firmware
Mitigation only
HIGH 7.1
CVE-2022-39071
There is an unauthorized access vulnerability in some ZTE mobile phones. If a malicious application is installed on the phone, it could overwrite som…
Blade A52 Firmware
1.14 / 2.2+
HIGH 7.1
CVE-2022-39075
There is an unauthorized access vulnerability in some ZTE mobile phones. If a malicious application is installed on the phone, it could delete some s…
Blade A52 Firmware
1.14 / 2.2+
CRITICAL 9.8
CVE-2022-39073
There is a command injection vulnerability in ZTE MF286R, Due to insufficient validation of the input parameters, an attacker could use the vulnerabi…
Mf286r Firmware
Mitigation only
MEDIUM 5.4
CVE-2022-39072
There is a SQL injection vulnerability in Some ZTE Mobile Internet products. Due to insufficient validation of the input parameters of the SNTP inter…
Mf286r Firmware
Mitigation only
HIGH 7.5
CVE-2022-45957EPSS 11%
ZTE ZXHN-H108NS router with firmware version H108NSV1.0.7u_ZRD_GR2_A68 is vulnerable to remote stack buffer overflow.
Zxhn H108ns Firmware
No fix yet
MEDIUM 6.5
CVE-2022-23143
ZTE OTCP product is impacted by a permission and access control vulnerability. Due to improper permission settings, an attacker with high permissions…
Otcp Firmware
2.21.40.06+
CRITICAL 9.8
CVE-2022-39070
There is an access control vulnerability in some ZTE PON OLT products. Due to improper access control settings, remote attackers could use the vulner…
Zxa10 C350m Firmware
2.1.0xgp002.4+
HIGH 8.8
CVE-2022-39066EPSS 27%
There is a SQL injection vulnerability in ZTE MF286R. Due to insufficient validation of the input parameters of the phonebook interface, an authentic…
Mf286r Firmware
Mitigation only
MEDIUM 6.5
CVE-2022-39067
There is a buffer overflow vulnerability in ZTE MF286R. Due to lack of input validation on parameters of the wifi interface, an authenticated attacke…
Mf286r Firmware
Mitigation only
MEDIUM 5.3
CVE-2022-39069
There is a SQL injection vulnerability in ZTE ZAIP-AIE. Due to lack of input verification by the server, an attacker could trigger an attack by build…
Zaip Aie
8.22.02+
CRITICAL 9.1
CVE-2022-23144
There is a broken access control vulnerability in ZTE ZXvSTB product. Due to improper permission control, attackers could use this vulnerability to d…
Zxa10 B76hv3 Firmware
after 2.01.02.01
MEDIUM 5.3
CVE-2022-23142
ZXEN CG200 has a DoS vulnerability. An attacker could construct and send a large number of HTTP GET requests in a short time, which can make the prod…
Zxen Cg200 Firmware
1.0.0p1n6_m+
HIGH 7.5
CVE-2022-23141
ZXMP M721 has an information leak vulnerability. Since the serial port authentication on the ZBOOT interface is not effective although it is enabled,…
Zxmp M721 Firmware
Mitigation only
HIGH 7.5
CVE-2022-23138
ZTE's MF297D product has cryptographic issues vulnerability. Due to the use of weak random values, the security of the device is reduced, and it may …
Mf297d Firmware
Mitigation only
HIGH 8.8
CVE-2022-23139
ZTE's ZXMP M721 product has a permission and access control vulnerability. Since the folder permission viewed by sftp is 666, which is inconsistent w…
Zxmp M721 Firmware
Mitigation only
MEDIUM 6.1
CVE-2022-23137
ZTE's ZXCDN product has a reflective XSS vulnerability. The attacker could modify the parameters in the content clearing request url, and when a user…
Zxcdn Firmware
Mitigation only