RSS   Vulnerabilities for 'Zxhn h108n r1a firmware'   RSS

2015-12-30
 
CVE-2015-8703

 

 
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE and ZXV10 W300 devices W300V1.0.0f_ER1_PE allow remote authenticated users to bypass intended access restrictions, and discover credentials and keys, by reading the configuration file, a different vulnerability than CVE-2015-7248.

 
 
CVE-2015-7252

 

 
Cross-site scripting (XSS) vulnerability in cgi-bin/webproc on ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allows remote attackers to inject arbitrary web script or HTML via the errorpage parameter.

 
 
CVE-2015-7251

 

 
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE have a hardcoded password of root for the root account, which allows remote attackers to obtain administrative access via a TELNET session.

 
 
CVE-2015-7250

 

 
Absolute path traversal vulnerability in cgi-bin/webproc on ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allows remote attackers to read arbitrary files via a full pathname in the getpage parameter.

 
 
CVE-2015-7249

 

 
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote authenticated users to bypass intended access restrictions via a modified request, as demonstrated by leveraging the support account to change a password via a cgi-bin/webproc accountpsd action.

 
 
CVE-2015-7248

 

 
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote attackers to discover usernames and password hashes by reading the cgi-bin/webproc HTML source code, a different vulnerability than CVE-2015-8703.

 

 >>> Vendor: ZTE 43 Products
Score m
Zxdsl
Zxv10 w300
F660
F460
Zxv10 w300 firmware
Zxhn h108l firmware
Zxdsl 831
Zxdsl 831cii
Zxhn h108n r1a firmware
Gan9.8t101a-b firmware
Zxhn h108n firmware
W300v1.0.0s zrd tr1 d68 firmware
Ox-330p firmware
Hg110 firmware
Mf28g firmware
Zxr10 1800-2s firmware
Nr8250 firmware
Nr8150 firmware
Nr8120 firmware
Nr8000tr firmware
Nr8120a firmware
Nr8950 firmware
Zxdt22 sf01 firmware
Zxdsl 831cii firmware
Mf65 firmware
Mf65m1 firmware
Zxhn f670 firmware
Zxr10 8905e firmware
Zxhn h168n firmware
Zxin10
Usmartview
Zxcloud irai
Netnumen dap firmware
Zxmw nr8000 firmware
Otcp firmware
Zxv10 b860a firmware
Zxcloud goldendata vap
OSCP
Zenic one r22b
Ztemarket apk
EVDC
Axon 30 pro message service


Copyright 2024, cxsecurity.com

 

Back to Top