VYPR

Vendor CVEs

Zte

All CVEs

220 total · sorted by risk
  • CVE-2026-34473HigMay 6, 2026
    risk 0.52cvss 7.5epss 0.02

    Unauthenticated DoS in ZTE H8102E, H168N, H167A, H199A, H288A, H198A, H267A, H267N, H268A, H388X, H196A, H369A, H268N, H208N, H367N, H181A, and H196Q. A denial-of-service condition can be triggered against the router's web interface by sending an oversized…

  • CVE-2020-6870HigJun 24, 2020
    risk 0.52cvss 8.0epss 0.01

    The version V12.17.20T115 of ZTE U31R20 product is impacted by a design error vulnerability. An attacker could exploit the vulnerability to log in to the FTP server to tamper with the password, and illegally download, modify, upload, or delete files, causing improper operation…

  • CVE-2019-3421HigOct 31, 2019
    risk 0.52cvss 8.0epss 0.01

    The 7520V3V1.0.0B09P27 version, and all earlier versions of ZTE product ZX297520V3 are impacted by a Command Injection vulnerability. Unauthorized users can exploit this vulnerability to control the user terminal system.

  • CVE-2018-7358MedNov 14, 2018
    risk 0.52cvss 6.5epss 0.90

    ZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper change control vulnerability, which may allow an unauthorized user to perform unauthorized operations.

  • CVE-2018-7357MedNov 14, 2018
    risk 0.52cvss 6.5epss 0.88

    ZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper access control vulnerability, which may allow an unauthorized user to gain unauthorized access.

  • CVE-2015-7257HigAug 24, 2017
    risk 0.52cvss 7.5epss 0.07

    ZTE ADSL ZXV10 W300 modems W300V2.1.0f_ER7_PE_O57 and W300V2.1.0h_ER7_PE_O57 allow remote authenticated non-administrator users to change the admin password by intercepting an outgoing password change request, and changing the username parameter from "support" to "admin".

  • CVE-2015-7248HigDec 30, 2015
    risk 0.52cvss 7.5epss 0.07

    ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote attackers to discover usernames and password hashes by reading the cgi-bin/webproc HTML source code, a different vulnerability than CVE-2015-8703.

  • CVE-2021-21750HigDec 27, 2021
    risk 0.51cvss 7.8epss 0.00

    ZTE BigVideo Analysis product has a privilege escalation vulnerability. Due to improper management of the timed task modification privilege, an attacker with ordinary user permissions could exploit this vulnerability to gain unauthorized access.

  • CVE-2015-0974HigAug 28, 2017
    risk 0.51cvss 7.8epss 0.01

    Untrusted search path vulnerability in ZTE Datacard MF19 0V1.0.0B04 allows local users to gain privilege by modifying the 'Ucell Internet' directory to reference a malicious mms_dll_r.dll or mediaplayerdll.dll.

  • CVE-2026-34472HigMar 30, 2026
    risk 0.50cvss 7.1epss 0.09

    Unauthenticated credential disclosure in the wizard interface in ZTE ZXHN H188A V6.0.10P2_TE and V6.0.10P3N3_TE allows unauthenticated attackers on the local network to retrieve sensitive credentials from the router's web management interface, including the default administrator…

  • CVE-2025-46582HigOct 27, 2025
    risk 0.50cvss 7.7epss 0.00

    A private key disclosure vulnerability exists in ZTE's ZXMP M721 product. A low-privileged user can bypass authorization checks to view the device's communication private key, resulting in key exposure and impacting communication security.

  • CVE-2025-46580HigApr 27, 2025
    risk 0.50cvss 7.7epss 0.00

    There is a code-related vulnerability in the GoldenDB database product. Attackers can access system tables to disrupt the normal operation of business SQL.

  • CVE-2023-25645HigJun 16, 2023
    risk 0.50cvss 7.7epss 0.00

    There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application can perform functions that are protected with signature/privilege-level permissions. Exploitation of this vulnerability could clear…

  • CVE-2022-45957HigDec 12, 2022
    risk 0.50cvss 7.5epss 0.11

    ZTE ZXHN-H108NS router with firmware version H108NSV1.0.7u_ZRD_GR2_A68 is vulnerable to remote stack buffer overflow.

  • CVE-2020-12695HigJun 8, 2020
    risk 0.50cvss 7.5epss 0.15

    The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.

  • CVE-2026-49007HigAug 7, 2026
    risk 0.49cvss 7.5epss 0.00

    By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web interface.

  • CVE-2025-66314HigNov 27, 2025
    risk 0.49cvss 7.5epss 0.00

    Improper Privilege Management vulnerability in ZTE ElasticNet UME R32 on Linux allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects ElasticNet UME R32: ElasticNet_UME_R32_V16.23.20.04.

  • CVE-2024-22063HigDec 30, 2024
    risk 0.49cvss 7.6epss 0.01

    The ZENIC ONE R58 products by ZTE Corporation have a command injection vulnerability. An authenticated attacker can exploit this vulnerability to tamper with messages, inject malicious code, and subsequently launch attacks on related devices.

  • CVE-2024-22066HigOct 29, 2024
    risk 0.49cvss 7.5epss 0.00

    There is a privilege escalation vulnerability in ZTE ZXR10 ZSR V2 intelligent multi service router . An authenticated attacker could use the vulnerability to obtain sensitive information about the device.

  • CVE-2022-23141HigJul 15, 2022
    risk 0.49cvss 7.5epss 0.01

    ZXMP M721 has an information leak vulnerability. Since the serial port authentication on the ZBOOT interface is not effective although it is enabled, an attacker could use this vulnerability to log in to the device to obtain sensitive information.

  • CVE-2022-23138HigJun 9, 2022
    risk 0.49cvss 7.5epss 0.01

    ZTE's MF297D product has cryptographic issues vulnerability. Due to the use of weak random values, the security of the device is reduced, and it may face the risk of attack.

  • CVE-2021-21744HigOct 20, 2021
    risk 0.49cvss 7.5epss 0.01

    ZTE MF971R product has a configuration file control vulnerability. An attacker could use this vulnerability to modify the configuration parameters of the device, causing some security functions of the device to be disabled.

  • CVE-2021-21737HigJun 24, 2021
    risk 0.49cvss 7.5epss 0.01

    A smart STB product of ZTE is impacted by a permission and access control vulnerability. Due to insufficient protection of system application, attackers could use this vulnerability to tamper with the system desktop and affect system customization functions. This affects: ZXV10…

  • CVE-2021-21732HigMay 19, 2021
    risk 0.49cvss 7.5epss 0.01

    A mobile phone of ZTE is impacted by improper access control vulnerability. Due to improper permission settings, third-party applications can read some files in the proc file system without authorization. Attackers could exploit this vulnerability to obtain sensitive…

  • CVE-2021-21727HigMar 29, 2021
    risk 0.49cvss 7.5epss 0.01

    A ZTE product has a DoS vulnerability. A remote attacker can amplify traffic by sending carefully constructed IPv6 packets to the affected devices, which eventually leads to device denial of service. This affects:

  • CVE-2021-21723HigJan 26, 2021
    risk 0.49cvss 7.5epss 0.01

    Some ZTE products have a DoS vulnerability. Due to the improper handling of memory release in some specific scenarios, a remote attacker can trigger the vulnerability by performing a series of operations, resulting in memory leak, which may eventually lead to device denial of…

  • CVE-2020-6882HigDec 21, 2020
    risk 0.49cvss 7.5epss 0.01

    ZTE E8810/E8820/E8822 series routers have an information leak vulnerability, which is caused by hard-coded MQTT service access credentials on the device. The remote attacker could use this credential to connect to the MQTT server, so as to obtain information about other devices…

  • CVE-2020-6881HigDec 21, 2020
    risk 0.49cvss 7.5epss 0.01

    ZTE E8810/E8820/E8822 series routers have an MQTT DoS vulnerability, which is caused by the failure of the device to verify the validity of abnormal messages. A remote attacker could connect to the MQTT server and send an MQTT exception message to the specified device, which…

  • CVE-2019-3411HigJun 11, 2019
    risk 0.49cvss 7.5epss 0.01

    All versions up to BD_R218V2.4 of ZTE MF920 product are impacted by information leak vulnerability. Due to some interfaces can obtain the WebUI login password without login, an attacker can exploit the vulnerability to obtain sensitive information about the affected components.

  • CVE-2018-14990HigApr 25, 2019
    risk 0.49cvss 7.5epss 0.02

    The Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro with a build fingerprint of ZTE/P895T20/urd:6.0.1/MMB29M/20170418.114928:user/release-keys, and the T-Mobile Revvl Plus with a build…

  • CVE-2018-7362HigNov 16, 2018
    risk 0.49cvss 7.5epss 0.01

    All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by improper access control vulnerability, which may allows an unauthorized user to perform unauthorized operations on the router.

  • CVE-2017-10937HigJul 25, 2018
    risk 0.49cvss 7.5epss 0.01

    SQL injection vulnerability in all versions prior to V2.01.05.09 of the ZTE ZXIPTV-UCM product allows remote attackers to execute arbitrary SQL commands via the opertype parameter, resulting in the disclosure of database information.

  • CVE-2017-10936HigJul 25, 2018
    risk 0.49cvss 7.5epss 0.01

    SQL injection vulnerability in all versions prior to V4.01.01 of the ZTE ZXCDN-SNS product allows remote attackers to execute arbitrary SQL commands via the aoData parameter, resulting in the disclosure of database information.

  • CVE-2017-10933HigOct 19, 2017
    risk 0.49cvss 7.5epss 0.02

    All versions prior to V2.06.00.00 of ZTE ZXDT22 SF01, an monitoring system of ZTE energy product, are impacted by directory traversal vulnerability that allows remote attackers to read arbitrary files on the system via a full path name after host address.

  • CVE-2017-10931HigSep 19, 2017
    risk 0.49cvss 7.5epss 0.01

    The ZXR10 1800-2S before v3.00.40 incorrectly restricts the download of the file directory range for WEB users, resulting in the ability to download any files and cause information leaks such as system configuration.

  • CVE-2015-7255HigAug 29, 2017
    risk 0.49cvss 7.5epss 0.02

    ZTE OX-330P, ZXHN H108N, W300V1.0.0S_ZRD_TR1_D68, HG110, GAN9.8T101A-B, MF28G, ZXHN H108N use non-unique X.509 certificates and SSH host keys, which might allow remote attackers to obtain credentials or other sensitive information via a man-in-the-middle attack, passive…

  • CVE-2021-21736HigJun 10, 2021
    risk 0.47cvss 7.2epss 0.01

    A smart camera product of ZTE is impacted by a permission and access control vulnerability. Due to the defect of user permission management by the cloud-end app, users whose sharing permissions have been revoked can still control the camera, such as restarting the camera,…

  • CVE-2019-3427HigNov 22, 2019
    risk 0.47cvss 7.2epss 0.01

    The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a code injection vulnerability. An attacker could exploit the vulnerability to inject malicious code into the management page, resulting in users’ information leakage.

  • CVE-2017-10935HigJul 25, 2018
    risk 0.47cvss 7.2epss 0.01

    All versions prior to ZSRV2 V3.00.40 of the ZTE ZXR10 1800-2S products allow remote authenticated users to bypass the original password authentication protection to change other user's password.

  • CVE-2026-49000HigMay 27, 2026
    risk 0.46cvss 7.0epss 0.00

    An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequate key management, or flawed code implementation, which may lead to data leakage or tampering, such as hard-coded keys or the use of weak encryption algorithms.

  • CVE-2026-40436HigApr 13, 2026
    risk 0.46cvss 7.1epss 0.00

    The ZTE ZXEDM iEMS product has a password reset vulnerability for any user.Because the management of the cloud EMS portal does not properly control access to the user list acquisition function, attackers can read all user list information through the user list interface.…

  • CVE-2024-22069HigAug 8, 2024
    risk 0.46cvss 7.1epss 0.00

    There is a permission and access control vulnerability of ZTE's ZXV10 XT802/ET301 product.Attackers with common permissions can log in the terminal web and change the password of the administrator illegally by intercepting requests to change the passwords.

  • CVE-2023-25646HigJun 20, 2024
    risk 0.46cvss 7.1epss 0.00

    There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attackers with common user permissions can use this vulnerability to obtain elevated permissions on the affected device by performing specific operations.

  • CVE-2022-39075HigMay 30, 2023
    risk 0.46cvss 7.1epss 0.00

    There is an unauthorized access vulnerability in some ZTE mobile phones. If a malicious application is installed on the phone, it could delete some system files without user permission.

  • CVE-2022-39071HigMay 30, 2023
    risk 0.46cvss 7.1epss 0.00

    There is an unauthorized access vulnerability in some ZTE mobile phones. If a malicious application is installed on the phone, it could overwrite some system configuration files and user installers without user permission.

  • CVE-2018-15005HigDec 28, 2018
    risk 0.46cvss 7.1epss 0.00

    The ZTE ZMAX Champ Android device with a build fingerprint of ZTE/Z917VL/fortune:6.0.1/MMB29M/20170327.120922:user/release-keys contains a pre-installed platform app with a package name of com.zte.zdm.sdm (versionCode=31, versionName=V5.0.3) that contains an exported broadcast…

  • CVE-2015-8703MedDec 30, 2015
    risk 0.46cvss 6.5epss 0.05

    ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE and ZXV10 W300 devices W300V1.0.0f_ER1_PE allow remote authenticated users to bypass intended access restrictions, and discover credentials and keys, by reading the configuration file, a different vulnerability than…

  • CVE-2024-22067MedNov 18, 2024
    risk 0.44cvss 6.8epss 0.01

    ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission control of the Web module interface, an authenticated attacker may exploit the vulnerability to execute arbitrary commands.

  • CVE-2024-22065MedOct 29, 2024
    risk 0.44cvss 6.8epss 0.01

    There is a command injection vulnerability in ZTE MF258 Pro product. Due to insufficient validation of Ping Diagnosis interface parameter, an authenticated attacker could use the vulnerability to execute arbitrary commands.

  • CVE-2023-41776MedJan 3, 2024
    risk 0.44cvss 6.7epss 0.00

    There is a local privilege escalation vulnerability of ZTE's ZXCLOUD iRAI.Attackers with regular user privileges can create a fake process, and to escalate local privileges.

Page 2 of 5