Medium severity6.5NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026
CVE-2022-23135
CVE-2022-23135
Description
There is a directory traversal vulnerability in some home gateway products of ZTE. Due to the lack of verification of user modified destination path, an attacker with specific permissions could modify the FTP access path to access and modify the system path contents without authorization, which will cause information leak and affect device operation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- ZTE/home gateway productsdescription
Patches
Vulnerability mechanics
References
1- support.zte.com.cn/support/news/LoopholeInfoDetail.aspxnvdVendor Advisory
News mentions
0No linked articles in our index yet.