ZeroHour

CVE-2021-21740

CVSS 3.1
2.4 low
EPSS
<1%p37
Published
()
Modified
Description

There is an information leak vulnerability in the digital media player (DMS) of ZTE's residential gateway product. The attacker could insert the USB disk with the symbolic link into the residential gateway, and access unauthorized directory information through the symbolic link, causing information leak.

Vendors
zte
Products
zxhn h2640 firmware
Weakness
CWE-59
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.