PT-2024-12970 · Zte · Zte Zxcloud Irai

Published

2024-01-02

·

Updated

2024-01-09

·

CVE-2023-41780

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ZTE ZXCLOUD iRAI (affected versions not specified)
Description The issue is related to an unsafe DLL loading vulnerability. It occurs because the program fails to adequately validate the user's input, allowing an attacker to exploit this vulnerability to escalate local privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-41780

Affected Products

Zte Zxcloud Irai