← Back

CVE-2021-21734

nvd nist
Published: May 28, 2021Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Some PON MDU devices of ZTE stored sensitive information in plaintext, and users with login authority can obtain it by inputing command. This affects: ZTE PON MDU device ZXA10 F821 V1.7.0P3T22, ZXA10 F822 V1.4.3T6, ZXA10 F819 V1.2.1T5, ZXA10 F832 V1.1.1T7, ZXA10 F839 V1.1.0T8, ZXA10 F809 V3.2.1T1, ZXA10 F822P V1.1.1T7, ZXA10 F832 V2.00.00.01

Affected (8)

8 products
Zxa10 F821 Firmware
Zxa10 F822 Firmware
Zxa10 F819 Firmware
Zxa10 F832 Firmware
Zxa10 F839 Firmware
Zxa10 F809 Firmware
Zxa10 F822p Firmware
Zxa10 F832v2 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.7.0p3t22
Running on/withPlatform Versions
Zte
Zxa10 F821
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.4.3t6
Running on/withPlatform Versions
Zte
Zxa10 F822
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.2.1t5
Running on/withPlatform Versions
Zte
Zxa10 F819
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.1.1t7
Running on/withPlatform Versions
Zte
Zxa10 F832
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.1.0t8
Running on/withPlatform Versions
Zte
Zxa10 F839
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 3.2.1t1
Running on/withPlatform Versions
Zte
Zxa10 F809
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.1.1t7
Running on/withPlatform Versions
Zte
Zxa10 F822p
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.00.00.01
Running on/withPlatform Versions
Zte
Zxa10 F832v2
All versions

References (2)

Timeline

No history available yet.