CVE-2019-3431

All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have encryption problems vulnerability. Attackers could sniff unencrypted account and password through the network for front-end system access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:zte:zxcloud_goldendata_vap:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:42

Type Values Removed Values Added
References () http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1012023 - Vendor Advisory () http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1012023 - Vendor Advisory

Information

Published : 2019-12-23 19:15

Updated : 2024-11-21 04:42


NVD link : CVE-2019-3431

Mitre link : CVE-2019-3431

CVE.ORG link : CVE-2019-3431


JSON object : View

Products Affected

zte

  • zxcloud_goldendata_vap
CWE
CWE-311

Missing Encryption of Sensitive Data

CWE-522

Insufficiently Protected Credentials