CVE-2021-21722
Summary
| CVE | CVE-2021-21722 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-01-14 16:15:00 UTC |
| Updated | 2022-07-12 17:42:00 UTC |
| Description | A ZTE Smart STB is impacted by an information leak vulnerability. The device did not fully verify the log, so attackers could use this vulnerability to obtain sensitive user information for further information detection and attacks. This affects: ZXV10 B860A V2.1-T_V0032.1.1.04_jiangsuTelecom. |
Risk And Classification
Problem Types: CWE-532
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Zte | Zxv10 B860a | - | All | All | All |
| Hardware | Zte | Zxv10 B860a | - | All | All | All |
| Hardware | Zte | Zxv10 B860a | - | All | All | All |
| Operating System | Zte | Zxv10 B860a Firmware | v2.1-t_v0032.1.1.04_jiangsutelecom | All | All | All |
| Operating System | Zte | Zxv10 B860a Firmware | v2.1-t_v0032.1.1.04_jiangsutelecom | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Bulletin Details | MISC | support.zte.com.cn | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.