ZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper change control vulnerability, which may allow an unauthorized user to perform unauthorized operations. Publish Date : 2018-11-14 Last Update Date : 2019-10-09 Scroll To | Comments | External Links |
- CVSS Scores & Vulnerability Types CVSS Score |
---|
Confidentiality Impact | Partial(There is considerable informational disclosure.) |
---|
Integrity Impact | Partial(Modification of some system files or information is possible, but the attacker does not have control over what can be modified, or the scope of what the attacker can affect is limited.) |
---|
Availability Impact | Partial(There is reduced performance or interruptions in resource availability.) |
---|
Access Complexity | Low(Specialized access conditions or extenuating circumstances do not exist. Very little knowledge or skill is required to exploit. ) |
---|
Authentication | Not required(Authentication is not required to exploit the vulnerability.) |
---|
Gained Access | None |
---|
Vulnerability Type(s) |
---|
CWE ID | 287 |
---|
|
- Products Affected By CVE-2018-7358 # | Product Type | Vendor | Product | Version | Update | Edition | Language |
---|
No vulnerable product found. If the vulnerability is created recently it may take a few days to gather vulnerable products list and other information like cvss scores. Please check again in a few days. |
- References For CVE-2018-7358 http://www.securityfocus.com/bid/105963 BID 105963 ZTE ZXHN H168N CVE-2018-7358 Authorization Bypass Vulnerability Release Date:2018-11-15 | https://www.exploit-db.com/exploits/45972/ EXPLOIT-DB 45972 | http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1009523 CONFIRM
|
|
- Metasploit Modules Related To CVE-2018-7358There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information)
|
Zxhn H108n V2.3 Firmware Version 10.0 Windows 10
There you will find build specific topics that discuss any issues with a particular build/release. For more up-to-date firmware files, please visit the firmware faq. Zxhn h108n v2.5 firmware. Zxhn H108n V2.3 Firmware Version 10.0 Free Download. I need the original firmware of ZXHN H108N because I have serious problem with it and I can’t find it anywhere. Very little knowledge or skill is required to exploit Use of this information constitutes acceptance for use in an AS IS condition.
Zxhn H108n V2.3 Firmware Version 10.0 64-bit
ZTE ZXHN H108L with firmware 4.0.0d_ZRQ_GR4 allows remote attackers to modify the CWMP configuration via a crafted request to Forms/access_cwmp_1. Publish Date : 2014-11-20 Last Update Date : 2017-09-08 Scroll To | Comments | External Links |
- CVSS Scores & Vulnerability Types CVSS Score |
---|
Confidentiality Impact | None(There is no impact to the confidentiality of the system.) |
---|
Integrity Impact | Partial(Modification of some system files or information is possible, but the attacker does not have control over what can be modified, or the scope of what the attacker can affect is limited.) |
---|
Availability Impact | None(There is no impact to the availability of the system.) |
---|
Access Complexity | Low(Specialized access conditions or extenuating circumstances do not exist. Very little knowledge or skill is required to exploit. ) |
---|
Authentication | Not required(Authentication is not required to exploit the vulnerability.) |
---|
Gained Access | None |
---|
Vulnerability Type(s) |
---|
CWE ID | 264 |
---|
|
- Products Affected By CVE-2014-8493 # | Product Type | Vendor | Product | Version | Update | Edition | Language |
---|
No vulnerable product found. If the vulnerability is created recently it may take a few days to gather vulnerable products list and other information like cvss scores. Please check again in a few days. |
- References For CVE-2014-8493 Exploit!http://www.exploit-db.com/exploits/35272 EXPLOIT-DB 35272 ZTE ZXHN H108L - Authentication Bypass Author:Project Zero Labs Release Date:2014-11-17 (hardware) webapps | https://exchange.xforce.ibmcloud.com/vulnerabilities/98733 XF zxhnh108l-cve20148493-sec-bypass(98733) | https://projectzero.gr/en/2014/11/zte-zxhn-h108l-authentication-bypass/
| http://packetstormsecurity.com/files/129139/ZTE-ZXHN-H108L-Access-Bypass.html
| Exploit!http://www.exploit-db.com/exploits/35276 EXPLOIT-DB 35276 ZTE ZXHN H108L - Authentication Bypass Author:Project Zero Labs Release Date:2014-11-17 (hardware) webappsPort:80 | http://seclists.org/fulldisclosure/2014/Nov/46 FULLDISC 20141117 CVE-2014-8493 - ZTE ZXHN H108L Authentication Bypass |
|
- Metasploit Modules Related To CVE-2014-8493There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information)
|