CVE-2021-21740
2.4
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 0.9 / Impact: 1.4
Source: NVD
Description
There is an information leak vulnerability in the digital media player (DMS) of ZTE's residential gateway product. The attacker could insert the USB disk with the symbolic link into the residential gateway, and access unauthorized directory information through the symbolic link, causing information leak.
Affected (1)
Products: Zte: Zxhn H2640 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 10.0.0c6_ty |
| Running on/with | Platform Versions |
|---|---|
Zte Zxhn H2640 | All versions |
References (2)
Source: psirt@zte.com.cn
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.