Improper Access Control in ZTE ZXHN Product
CVE-2021-21730
9.8CRITICAL
What is CVE-2021-21730?
An improper access control vulnerability has been identified in ZTE's ZXHN H168N product line. This vulnerability allows attackers to potentially gain unauthorized access to the command-line interface (CLI) through brute force methods. This poses a significant risk as attackers could manipulate device settings or perform other malicious activities. Users of the ZXHN H168N V3.5.0_TY.T6 should take immediate action to secure their systems against this exploit.
Affected Version(s)
ZXHN H168N V3.5.0_TY.T6
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
