PT-2021-14751 · Zte · Zte Residential Gateway

Published

2021-08-09

·

Updated

2021-08-17

·

CVE-2021-21740

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions ZTE residential gateway product (affected versions not specified)
Description The issue concerns an information leak vulnerability in the digital media player (DMS) of ZTE's residential gateway product. An attacker could exploit this by inserting a USB disk with a symbolic link into the residential gateway, allowing access to unauthorized directory information through the symbolic link. This results in an information leak.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-21740

Affected Products

Zte Residential Gateway