NA

CVE-2022-23144

Published: 23/09/2022 Updated: 08/08/2023
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

There is a broken access control vulnerability in ZTE ZXvSTB product. Due to improper permission control, attackers could use this vulnerability to delete the default application type, which affects normal use of system.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zte zxa10_b76hv3_firmware

zte zxa10_b766v2_firmware

zte zxa10_b800v2_firmware

zte zxa10_b860av2.1_firmware

zte zxa10_b860h_firmware

zte zxa10_b866v2-h_firmware

zte zxa10_b866v5-w10_firmware

zte zxa10_b960gv1_firmware

zte zxa10_b710c-a12_firmware

zte zxa10_b710s2-a19_firmware

zte zxa10_b836ct-a15_firmware

zte zxa10_s100v_firmware

zte zxa10_s200a_firmware

zte zxa10_s200t_firmware

zte zxa10_b700v7_firmware