Home
MEDIUM: 5.7 CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
BD_FLYMODEMMU5250V1.0.0B27
affected
Description
There is an an information disclosure vulnerability in ZTE MU5250. Due to improper configuration of the access control mechanism, attackers can obtain information without authorization, causing the risk of information disclosure.
Problem types
CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
Product status
BD_FLYMODEMMU5250V1.0.0B27
Credits
Duc Anh Nguyen (from NTCS&TinyxLab)
References
support.zte.com.cn/...ui/bulletin/detail/3711746568357343342