CVE-2022-39070
—CVSS 3.1
9.8 critical
EPSS
<1%p56
Published
()
Modified
Description
There is an access control vulnerability in some ZTE PON OLT products. Due to improper access control settings, remote attackers could use the vulnerability to log in to the device and execute any operation.
- Vendors
- zte
- Products
- zxa10 c350m firmware, zxa10 c300m firmware
- Weakness
- CWE-284
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.