There is a weak folder permission vulnerability in ZTE's ZXCLOUD iRAI product. Due to weak folder permission, an attacker with ordinary user privileges could construct a fake DLL to execute command to escalate local privileges.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
zte zxcloud_irai_firmware |