VYPR

Mc801a Firmware

by Zte

CVEs (3)

  • CVE-2023-25643HigDec 14, 2023
    risk 0.55cvss 8.4epss 0.02

    There is a command injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation of multiple network parameters, an authenticated attacker could use the vulnerability to execute arbitrary commands.

  • CVE-2023-25644MedDec 14, 2023
    risk 0.42cvss 6.5epss 0.01

    There is a denial of service vulnerability in some ZTE mobile internet products. Due to insufficient validation of Web interface parameter, an attacker could use the vulnerability to perform a denial of service attack.

  • CVE-2023-25642MedDec 14, 2023
    risk 0.38cvss 5.9epss 0.01

    There is a buffer overflow vulnerability in some ZTE mobile internet producsts. Due to insufficient validation of tcp port parameter, an authenticated attacker could use the vulnerability to perform a denial of service attack.