PT-2026-38328 · Zte · Zxcloud Irai

Published

2026-05-07

·

Updated

2026-05-07

·

CVE-2026-40004

CVSS v3.1

5.5

Medium

VectorAV:P/AC:H/PR:L/UI:R/S:C/C:H/I:L/A:N
There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud PC client uSmartview. An attacker can execute arbitrary code locally and escalate privileges.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

CVE-2026-40004

Affected Products

Zxcloud Irai