Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25646


There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attackers with common user permissions can use this vulnerability to obtain elevated permissions on the affected device by performing specific operations.


Published

2024-06-20T07:15:41.340

Last Modified

2025-01-28T16:29:58.553

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.1 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-281
  • Type: Primary
    CWE-281

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System zte zxhn_h388x_firmware 10.1_agzhm_1.3.1 Yes
Hardware zte zxhn_h388x - No

References