← Back

CVE-2017-10931

nvd nist
Published: Sep 19, 2017Modified: May 13, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

The ZXR10 1800-2S before v3.00.40 incorrectly restricts the download of the file directory range for WEB users, resulting in the ability to download any files and cause information leaks such as system configuration.

Affected (4)

4 products
Zxr10 1800 2s Firmware
Zxr10 2800 4 Firmware
Zxr10 3800 8 Firmware
Zxr10 160 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.00.40
Running on/withPlatform Versions
Zte
Zxr10 1800 2s
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.00.40
Running on/withPlatform Versions
Zte
Zxr10 2800 4
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.00.40
Running on/withPlatform Versions
Zte
Zxr10 3800 8
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.00.40
Running on/withPlatform Versions
Zte
Zxr10 160
All versions

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required

Timeline

No history available yet.