Back to search
CVE-2022-39072
Published: Jan 6, 2023
Modified: Apr 10, 2025
PUBLISHED
Description
There is a SQL injection vulnerability in Some ZTE Mobile Internet products. Due to insufficient validation of the input parameters of the SNTP interface, an authenticated attacker could use the vulnerability to execute stored XSS attacks.
| Vendor | Product | Versions |
|---|---|---|
n/a | MF286R,MF289D | affected Nordic_MF286R_B06, CR_TMOCZMF289DV1.0.0B07 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now