VendorsZTEmf286r_firmwarenordic_mf286r_b06
Vulnerabilities

ZTE MF286R FIRMWARE nordic_mf286r_b06

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2022-39073
There is a command injection vulnerability in ZTE MF286R, Due to insufficient validation of the input parameters, an attacker could use the vulnerability to execute arbitrary commands.
Published 2023-01-06 · Modified
9.8EPSS 0.033
CVE-2022-39072
There is a SQL injection vulnerability in Some ZTE Mobile Internet products. Due to insufficient validation of the input parameters of the SNTP interface, an authenticated attacker could use the vulnerability to execute stored XSS attacks.
Published 2023-01-06 · Modified
5.4EPSS 0.003