CVE Database
/

CVE-2018-7366

Back to search

CVE-2018-7366

Published: Dec 28, 2018

Modified: Aug 5, 2024

PUBLISHED

CVSS v3.0

4.3

MEDIUM

Description

ZTE ZXV10 B860AV2.1 product ChinaMobile branch with the ICNT versions up to V1.3.3, the BESTV versions up to V1.2.2, the WASU versions up to V1.1.7 and the MGTV versions up to V1.4.6 have an authentication bypass vulnerability, which may allows an unauthorized user to perform unauthorized operations.

VendorProductVersions

ZTE

ZXV10 B860AV2.1_ChinaMobile

affected
unspecified - <= ICNT_V1.3.3
affected
unspecified - <= BESTV_V1.2.2
affected
unspecified - <= WASU_V1.1.7
affected
unspecified - <= MGTV_V1.4.6

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Attack Vector

Physical

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

Low

Integrity

Low

Availability

Low

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now