CVE-2024-22067

ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission control of the Web module interface, an authenticated attacker may exploit the vulnerability to execute arbitrary commands.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:zte:nh8091_firmware:znh8091v1.8:*:*:*:*:*:*:*
cpe:2.3:h:zte:nh8091:-:*:*:*:*:*:*:*

History

20 Nov 2024, 16:24

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
First Time Zte nh8091 Firmware
Zte nh8091
Zte
CPE cpe:2.3:h:zte:nh8091:-:*:*:*:*:*:*:*
cpe:2.3:o:zte:nh8091_firmware:znh8091v1.8:*:*:*:*:*:*:*
References () https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/6179526095692935173 - () https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/6179526095692935173 - Vendor Advisory

18 Nov 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-18 07:15

Updated : 2025-03-13 17:15


NVD link : CVE-2024-22067

Mitre link : CVE-2024-22067


JSON object : View

Products Affected

zte

  • nh8091_firmware
  • nh8091