Configuration File Control Vulnerability in ZTE MF971R
CVE-2021-21744

7.5HIGH

Key Information:

Vendor

Zte

Status
Vendor
CVE Published:
20 October 2021

What is CVE-2021-21744?

The ZTE MF971R device is susceptible to a configuration file control vulnerability that enables an attacker to modify critical configuration parameters. This exploitation can lead to the disabling of essential security functions, potentially compromising the integrity and security of the device. It is crucial for users to be aware of this vulnerability and implement necessary security measures to safeguard their devices.

Affected Version(s)

MF971R BD_ZTE_MF971RV1.0.0B05, BD_PLKPLMF971R1V1.0.0B06, BD_MF971R2V1.0.0B03, BD_ZTE_MF971RS2V1.0.0B03, BD_ZTE_MF971RSV1.0.0B05

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.