Medium severity6.1NVD Advisory· Published Aug 5, 2021· Updated Jun 17, 2026
CVE-2021-21738
CVE-2021-21738
Description
ZTE's big video business platform has two reflective cross-site scripting (XSS) vulnerabilities. Due to insufficient input verification, the attacker could implement XSS attacks by tampering with the parameters, to affect the operations of valid users. This affects: <ZXIPTV-EAS_PV5.06.04.09>
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- ZTE/big video business platformdescription
- cpe:2.3:o:zte:zxiptv_firmware:zxiptv-eas_pv5.06.04.09:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- support.zte.com.cn/support/news/LoopholeInfoDetail.aspxnvdVendor Advisory
News mentions
0No linked articles in our index yet.