There is a command injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation of multiple network parameters, an authenticated attacker could use the vulnerability to execute arbitrary commands.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: zte

Published: 2023-12-14T07:19:08.757Z

Updated: 2023-12-14T07:19:08.757Z

Reserved: 2023-02-09T19:47:48.022Z


Link: CVE-2023-25643

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-12-14T08:15:38.357

Modified: 2023-12-18T20:09:13.630


Link: CVE-2023-25643

JSON object: View

cve-icon Redhat Information

No data.

CWE