All versions prior to V2.06.00.00 of ZTE ZXDT22 SF01, an monitoring system of ZTE energy product, are impacted by directory traversal vulnerability that allows remote attackers to read arbitrary files on the system via a full path name after host address.
References
Link | Resource |
---|---|
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1008582 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: zte
Published: 2017-10-09T00:00:00
Updated: 2017-10-19T20:57:01
Reserved: 2017-07-05T00:00:00
Link: CVE-2017-10933
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-10-19T21:29:00.453
Modified: 2017-11-08T13:20:05.033
Link: CVE-2017-10933
JSON object: View
Redhat Information
No data.
CWE