PT-2015-7491 · Zte · Zte Zxhn H108N R1A

Karn Ganeshen

·

Published

2015-12-30

·

Updated

2017-09-13

·

CVE-2015-7248

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k PE
Description The issue allows remote attackers to discover usernames and password hashes by reading the cgi-bin/webproc HTML source code.
Recommendations For ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k PE, update to ZTE.bhs.ZXHNH108NR1A.k PE or later to resolve the issue.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-7248

Affected Products

Zte Zxhn H108N R1A