CVE-2021-21725

A ZTE product has an information leak vulnerability. An attacker with higher authority can go beyond their authority to access files in other directories by performing specific operations, resulting in information leak. This affects: ZXHN H196Q V9.1.0C2.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:zte:zxhn_h196q_firmware:9.1.0c2:*:*:*:*:*:*:*
cpe:2.3:h:zte:zxhn_h196q:-:*:*:*:*:*:*:*

History

12 Mar 2021, 15:42

Type Values Removed Values Added
CPE cpe:2.3:h:zte:zxhn_h196q:-:*:*:*:*:*:*:*
cpe:2.3:o:zte:zxhn_h196q_firmware:9.1.0c2:*:*:*:*:*:*:*
CWE CWE-863
References (MISC) http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1014624 - (MISC) http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1014624 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 2.7
v3 : 5.7

05 Mar 2021, 17:46

Type Values Removed Values Added
New CVE

Information

Published : 2021-03-05 17:15

Updated : 2023-12-10 13:41


NVD link : CVE-2021-21725

Mitre link : CVE-2021-21725

CVE.ORG link : CVE-2021-21725


JSON object : View

Products Affected

zte

  • zxhn_h196q
  • zxhn_h196q_firmware
CWE
CWE-863

Incorrect Authorization