VYPR

ZXMP M721

by Zte

CVEs (3)

  • CVE-2022-23139HigMay 12, 2022
    risk 0.57cvss 8.8epss 0.01

    ZTE's ZXMP M721 product has a permission and access control vulnerability. Since the folder permission viewed by sftp is 666, which is inconsistent with the actual permission. It’s easy for?users to?ignore the modification?of?the file permission configuration, so that…

  • CVE-2025-46582HigOct 27, 2025
    risk 0.50cvss 7.7epss 0.00

    A private key disclosure vulnerability exists in ZTE's ZXMP M721 product. A low-privileged user can bypass authorization checks to view the device's communication private key, resulting in key exposure and impacting communication security.

  • CVE-2022-23141HigJul 15, 2022
    risk 0.49cvss 7.5epss 0.01

    ZXMP M721 has an information leak vulnerability. Since the serial port authentication on the ZBOOT interface is not effective although it is enabled, an attacker could use this vulnerability to log in to the device to obtain sensitive information.