A ZTE product is impacted by the improper access control vulnerability. Due to lack of an authentication protection mechanism in the program, attackers could use this vulnerability to gain access right through brute-force attacks. This affects: <ZXONE 19700 SNPE><ZXONE8700V1.40R2B13_SNPE>
References
Link | Resource |
---|---|
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1013643 | Vendor Advisory |
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1013643 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 05:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1013643 - Vendor Advisory |
Information
Published : 2020-10-05 15:15
Updated : 2024-11-21 05:36
NVD link : CVE-2020-6875
Mitre link : CVE-2020-6875
CVE.ORG link : CVE-2020-6875
JSON object : View
Products Affected
zte
- zxone_19700_snpe_firmware
- zxone_19700_snpe
CWE
CWE-306
Missing Authentication for Critical Function