VendorsZTEzxr10_1800-2s_firmwareall versions
Vulnerabilities

ZTE zxr10 1800-2s Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2017-10930
The ZXR10 1800-2S before v3.00.40 incorrectly restricts access to a resource from an unauthorized actor, resulting in ordinary users being able to download configuration files to steal information like administrator accounts and passwords.
Published 2017-09-19 · Modified
9.8EPSS 0.011
CVE-2017-10931
The ZXR10 1800-2S before v3.00.40 incorrectly restricts the download of the file directory range for WEB users, resulting in the ability to download any files and cause information leaks such as system configuration.
Published 2017-09-19 · Modified
7.5EPSS 0.013
CVE-2024-22066
There is a privilege escalation vulnerability in ZTE ZXR10 ZSR V2 intelligent multi service router . An authenticated attacker could use the vulnerability to obtain sensitive information about the device.
Published 2024-10-29 · Analyzed
7.5EPSS 0.003
CVE-2017-10935
All versions prior to ZSRV2 V3.00.40 of the ZTE ZXR10 1800-2S products allow remote authenticated users to bypass the original password authentication protection to change other user's password.
Published 2018-07-25 · Modified
7.2EPSS 0.013
CVE-2024-22068
Weak Password Vulnerability in ZTE ZSR V2 Intelligent Multi Service Router
Published 2024-10-10 · Analyzed
6.5EPSS 0.002