CVE-2022-23141
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
ZXMP M721 has an information leak vulnerability. Since the serial port authentication on the ZBOOT interface is not effective although it is enabled, an attacker could use this vulnerability to log in to the device to obtain sensitive information.
Affected (1)
Products: Zte: Zxmp M721 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version commond21bootv100004_ls1045 |
| Running on/with | Platform Versions |
|---|---|
Zte Zxmp M721 | All versions |
References (2)
Source: psirt@zte.com.cn
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.