The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a code injection vulnerability. An attacker could exploit the vulnerability to inject malicious code into the management page, resulting in users’ information leakage.
2019-11-22T16:15:12.147
2024-11-21T04:42:04.657
Modified
CVSSv3.1: 7.2 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | zte | zxcdn_iamweb_firmware | 6.01.03.01 | Yes |
Hardware | zte | zxcdn_iamweb | - | No |