ID

VAR-201911-1944


TITLE

Gigabit passive optical access user equipment has a logical flaw

Trust: 0.6

sources: CNVD: CNVD-2019-41434

DESCRIPTION

ZTE Corporation is a leading global provider of integrated communications solutions. The company provides innovative technologies and product solutions to telecommunications operators and enterprise network customers in more than 160 countries and regions around the world, so that users around the world can enjoy all-round communication such as voice, data, multimedia, and wireless broadband. Gigabit passive fiber access user equipment has a logic flaw vulnerability, which can be used by attackers to access sensitive data.

Trust: 0.6

sources: CNVD: CNVD-2019-41434

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2019-41434

AFFECTED PRODUCTS

vendor:ztemodel:gigabit passive fiber access client equipmentscope:eqversion:3.1

Trust: 0.6

sources: CNVD: CNVD-2019-41434

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2019-41434
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2019-41434
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2019-41434

PATCH

title:Gigabit passive optical access user equipment has a logical flawurl:https://www.cnvd.org.cn/patchinfo/show/185929

Trust: 0.6

sources: CNVD: CNVD-2019-41434

EXTERNAL IDS

db:CNVDid:CNVD-2019-41434

Trust: 0.6

sources: CNVD: CNVD-2019-41434

SOURCES

db:CNVDid:CNVD-2019-41434

LAST UPDATE DATE

2022-05-04T09:50:32.068000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2019-41434date:2019-12-13T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2019-41434date:2019-11-29T00:00:00