« Volver al listado

CVE-2021-37273

Estado: ModificadaAlta (7.5)—

Se presenta un problema de denegación de servicio en China Telecom Corporation EPON Tianyi Gateway ZXHN F450(EPON ONU) versión 3.0. Tianyi Gateway es un terminal de hardware de "Optical Modem Smart Router". Unos atacantes pueden usar esta vulnerabilidad para reiniciar el dispositivo varias veces

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2021-37273",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.8,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 6.9,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2021-09-28T18:15:08.793",
  "references": [
    {
      "url": "https://www.cnvd.org.cn/flaw/show/2958526",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://www.cnvd.org.cn/flaw/show/2958526",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A Denial of Service issue exists in China Telecom Corporation EPON Tianyi Gateway ZXHN F450(EPON ONU) 3.0. Tianyi Gateway is a hardware terminal of \"Optical Modem Smart Router.\" Attackers can use this vulnerability to restart the device multiple times."
    },
    {
      "lang": "es",
      "value": "Se presenta un problema de denegación de servicio en China Telecom Corporation EPON Tianyi Gateway ZXHN F450(EPON ONU) versión 3.0. Tianyi Gateway es un terminal de hardware de \"Optical Modem Smart Router\". Unos atacantes pueden usar esta vulnerabilidad para reiniciar el dispositivo varias veces"
    }
  ],
  "lastModified": "2026-06-17T04:00:19.837",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:chinatelecom:epon_tianyi_gateway_zxhn_f450_firmware:3.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1B6F27A6-5FEC-4F1B-9408-5CF40B9DFE2C"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:chinatelecom:epon_tianyi_gateway_zxhn_f450:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "AE693CA8-D527-42A7-A5F4-3300CC52E60D"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}