VendorsZTEmf286r_firmwareany version
Vulnerabilities

ZTE MF286R FIRMWARE any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2022-39066
There is a SQL injection vulnerability in ZTE MF286R. Due to insufficient validation of the input parameters of the phonebook interface, an authenticated attacker could use the vulnerability to execute arbitrary SQL injection.
Published 2022-11-22 · Modified
8.8EPSS 0.265
CVE-2022-39067
There is a buffer overflow vulnerability in ZTE MF286R. Due to lack of input validation on parameters of the wifi interface, an authenticated attacker could use the vulnerability to perform a denial of service attack.
Published 2022-11-22 · Modified
6.5EPSS 0.007