connoppp.cgi on ZTE ZXDSL 831CII devices does not require HTTP Basic Authentication, which allows remote malicious users to modify the PPPoE configuration or set up a malicious configuration via a GET request.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
zte zxdsl_831cii_firmware - |