4
CVSSv2

CVE-2021-21734

Published: 28/05/2021 Updated: 10/06/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Some PON MDU devices of ZTE stored sensitive information in plaintext, and users with login authority can obtain it by inputing command. This affects: ZTE PON MDU device ZXA10 F821 V1.7.0P3T22, ZXA10 F822 V1.4.3T6, ZXA10 F819 V1.2.1T5, ZXA10 F832 V1.1.1T7, ZXA10 F839 V1.1.0T8, ZXA10 F809 V3.2.1T1, ZXA10 F822P V1.1.1T7, ZXA10 F832 V2.00.00.01

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zte zxa10_f821_firmware 1.7.0p3t22

zte zxa10_f822_firmware 1.4.3t6

zte zxa10_f819_firmware 1.2.1t5

zte zxa10_f832_firmware 1.1.1t7

zte zxa10_f839_firmware 1.1.0t8

zte zxa10_f809_firmware 3.2.1t1

zte zxa10_f822p_firmware 1.1.1t7

zte zxa10_f832v2_firmware 2.00.00.01