All versions up to ZXINOS-RESV1.01.43 of the ZTE ZXIN10...
Critical severity
Unreviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Jan 26, 2023
Description
Published by the National Vulnerability Database
Dec 7, 2018
Published to the GitHub Advisory Database
May 13, 2022
Last updated
Jan 26, 2023
All versions up to ZXINOS-RESV1.01.43 of the ZTE ZXIN10 product European region are impacted by improper access control vulnerability. Due to improper access control to devcomm process, an unauthorized remote attacker can exploit this vulnerability to execute arbitrary code with root privileges.
References