9.8
CVSSv3

CVE-2020-6871

Published: 20/07/2020 Updated: 24/07/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The server management software module of ZTE has an authentication issue vulnerability, which allows users to skip the authentication of the server and execute some commands for high-level users. This affects: <R5300G4V03.08.0100/V03.07.0300/V03.07.0200/V03.07.0108/V03.07.0100/V03.05.0047/V03.05.0046/V03.05.0045/V03.05.0044/V03.05.0043/V03.05.0040/V03.04.0020;R8500G4V03.07.0103/V03.07.0101/V03.06.0100/V03.05.0400/V03.05.0020;R5500G4V03.08.0100/V03.07.0200/V03.07.0100/V03.06.0100>

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zte r8500g4_firmware 03.05.0020

zte r8500g4_firmware 03.05.0400

zte r8500g4_firmware 03.06.0100

zte r8500g4_firmware 03.07.0101

zte r8500g4_firmware 03.07.0103

zte r5500g4_firmware 03.06.0100

zte r5500g4_firmware 03.07.0100

zte r5500g4_firmware 03.07.0200

zte r5500g4_firmware 03.08.0100

zte r5300g4_firmware 03.04.0020

zte r5300g4_firmware 03.05.0040

zte r5300g4_firmware 03.05.0043

zte r5300g4_firmware 03.05.0044

zte r5300g4_firmware 03.05.0045

zte r5300g4_firmware 03.05.0046

zte r5300g4_firmware 03.05.0047

zte r5300g4_firmware 03.07.0100

zte r5300g4_firmware 03.07.0108

zte r5300g4_firmware 03.07.0200

zte r5300g4_firmware 03.07.0300

zte r5300g4_firmware 03.08.0100