← Back

Mf971r Firmware

mf971r_firmware

Vendor: Zte • 7 CVEs

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to cli...Show more
ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to click.Show less
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
ZTE MF971R product has a configuration file control vulnerability. An attacker could use this vulnerability to modify the configuration parameters of the device, causing some security functions of the device to be disabl...Show more
ZTE MF971R product has a configuration file control vulnerability. An attacker could use this vulnerability to modify the configuration parameters of the device, causing some security functions of the device to be disabled.Show less
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
ZTE MF971R product has a CRLF injection vulnerability. An attacker could exploit the vulnerability to modify the HTTP response header information through a specially crafted HTTP request.
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information.
1Zte
1Mf971r Firmware
Jun 17, 2026
Oct 20, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information.