ZTE
ZTE Mf971r Firmware: vulnerabilidades y CVE
ZTE Mf971r Firmware tiene 7 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-21749 | Crítica (9.8) | 1.6% | — | 20 oct 2021 | ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code. |
| CVE-2021-21748 | Crítica (9.8) | 1.8% | — | 20 oct 2021 | ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code. |
| CVE-2021-21745 | Media (4.3) | 56% | — | 20 oct 2021 | ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to… |
| CVE-2021-21744 | Alta (7.5) | 0.83% | — | 20 oct 2021 | ZTE MF971R product has a configuration file control vulnerability. An attacker could use this vulnerability to modify the configuration parameters of the device, causing some security functions of the device to be… |
| CVE-2021-21743 | Media (4.3) | 0.85% | — | 20 oct 2021 | ZTE MF971R product has a CRLF injection vulnerability. An attacker could exploit the vulnerability to modify the HTTP response header information through a specially crafted HTTP request. |
| CVE-2021-21747 | Media (6.1) | 0.58% | — | 20 oct 2021 | ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information. |
| CVE-2021-21746 | Media (6.1) | 0.58% | — | 20 oct 2021 | ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information. |