PT-2018-18051 · Zte · Zxin10

Guillaume Tessier

·

Publicado

2018-12-07

·

Atualizado

2023-03-01

·

CVE-2018-7364

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ZTE ZXIN10 versions prior to ZXINOS-RESV1.01.43
Description The issue is related to improper access control, specifically to the devcomm process, allowing an unauthorized remote attacker to execute arbitrary code with root privileges.
Recommendations For versions prior to ZXINOS-RESV1.01.43, update to a version newer than ZXINOS-RESV1.01.43 to resolve the issue.

Exploit

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-7364
GHSA-34F2-7H57-RG7P

Produtos afetados

Zxin10