All versions up to UKBB_WF820+_1.0.0B06 of ZTE WF820+ LTE Outdoor CPE product are impacted by command injection vulnerability. Due to inadequate parameter verification, unauthorized users can take advantage of this vulnerability to control the user terminal system.
2019-06-11T19:29:00.810
2024-11-21T04:42:02.670
Modified
CVSSv3.0: 9.0 (CRITICAL)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | zte | wf820\+_lte_outdoor_cpe_firmware | < 1.0.0b06 | Yes |
Hardware | zte | wf820\+_lte_outdoor_cpe | - | No |