Some PON MDU devices of ZTE stored sensitive information in plaintext, and users with login authority can obtain it by inputing command. This affects: ZTE PON MDU device ZXA10 F821 V1.7.0P3T22, ZXA10 F822 V1.4.3T6, ZXA10 F819 V1.2.1T5, ZXA10 F832 V1.1.1T7, ZXA10 F839 V1.1.0T8, ZXA10 F809 V3.2.1T1, ZXA10 F822P V1.1.1T7, ZXA10 F832 V2.00.00.01
2021-05-28T12:15:07.603
2024-11-21T05:48:54.243
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | zte | zxa10_f821_firmware | 1.7.0p3t22 | Yes |
Hardware | zte | zxa10_f821 | - | No |
Operating System | zte | zxa10_f822_firmware | 1.4.3t6 | Yes |
Hardware | zte | zxa10_f822 | - | No |
Operating System | zte | zxa10_f819_firmware | 1.2.1t5 | Yes |
Hardware | zte | zxa10_f819 | - | No |
Operating System | zte | zxa10_f832_firmware | 1.1.1t7 | Yes |
Hardware | zte | zxa10_f832 | - | No |
Operating System | zte | zxa10_f839_firmware | 1.1.0t8 | Yes |
Hardware | zte | zxa10_f839 | - | No |
Operating System | zte | zxa10_f809_firmware | 3.2.1t1 | Yes |
Hardware | zte | zxa10_f809 | - | No |
Operating System | zte | zxa10_f822p_firmware | 1.1.1t7 | Yes |
Hardware | zte | zxa10_f822p | - | No |
Operating System | zte | zxa10_f832v2_firmware | 2.00.00.01 | Yes |
Hardware | zte | zxa10_f832v2 | - | No |