← Back to CVEs
CVE-2020-6875
CRITICAL9.8
Description
A ZTE product is impacted by the improper access control vulnerability. Due to lack of an authentication protection mechanism in the program, attackers could use this vulnerability to gain access right through brute-force attacks. This affects: <ZXONE 19700 SNPE><ZXONE8700V1.40R2B13_SNPE>
CVE Details
CVSS v3.1 Score9.8
SeverityCRITICAL
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published10/5/2020
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0
Affected Products
zte:zxone_19700_snpezte:zxone_19700_snpe_firmware
Weaknesses (CWE)
CWE-306
References
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1013643(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.