ZeroHour

CVE-2021-21751

CVSS 3.1
8.1 high
EPSS
<1%p55
Published
()
Modified
Description

ZTE BigVideo analysis product has an input verification vulnerability. Due to the inconsistency between the front and back verifications when configuring the large screen page, an attacker with high privileges could exploit this vulnerability to tamper with the URL and cause service exception.

Vendors
zte
Products
zxin10 cms
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.