Vulnerability CVE-2023-25648


Published: 2023-12-14

Description:

There is a weak folder permission vulnerability in ZTE's ZXCLOUD iRAI product. Due to weak folder permission, an attacker with ordinary user privileges could construct a fake DLL to execute command to escalate local privileges.

 References:
https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1032584

Copyright 2026, cxsecurity.com

 

Back to Top