A smart camera product of ZTE is impacted by a permission and access control vulnerability. Due to the defect of user permission management by the cloud-end app, users whose sharing permissions have been revoked can still control the camera, such as restarting the camera, restoring factory settings, etc.. This affects ZXHN HS562 V1.0.0.0B2.0000, V1.0.0.0B3.0000E
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: zte

Published: 2021-06-10T11:28:57

Updated: 2021-06-10T11:28:57

Reserved: 2021-01-04T00:00:00


Link: CVE-2021-21736

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-06-10T12:15:08.490

Modified: 2021-06-17T19:21:36.230


Link: CVE-2021-21736

JSON object: View

cve-icon Redhat Information

No data.

CWE