There is a command injection vulnerability of ZTE's ZXCLOUD iRAI. Due to the program failed to adequately validate the user's input, an attacker could exploit this vulnerability to escalate local privileges.
2024-01-03T02:15:43.573
2025-01-28T15:36:03.663
Modified
CVSSv3.1: 4.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | zte | zxcloud_irai | < 7.23.32 | Yes |
Application | zte | zxcloud_irai | - | No |