VYPR
Medium severity5.7NVD Advisory· Published Jan 10, 2024· Updated Jun 17, 2026

CVE-2023-41781

CVE-2023-41781

Description

There is a Cross-site scripting (XSS)  vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack will be triggered.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:o:zte:mf258_firmware:zte_std_v1.0.0b08:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:zte:mf258_firmware:zte_std_v1.0.0b08:*:*:*:*:*:*:*
    • cpe:2.3:o:zte:mf258_firmware:zte_std_v1.0.0b10:*:*:*:*:*:*:*
  • Zte/MF258llm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: ZTE_STD_V1.0.0B08

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.