There is a Cross-site scripting (XSS) vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack will be triggered.
References
Link | Resource |
---|---|
https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1034684 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: zte
Published: 2024-01-10T06:11:49.198Z
Updated: 2024-01-10T06:12:27.758Z
Reserved: 2023-09-01T09:02:00.657Z
Link: CVE-2023-41781
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-01-10T07:15:49.423
Modified: 2024-01-17T01:24:19.650
Link: CVE-2023-41781
JSON object: View
Redhat Information
No data.