Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-85533
HistoryNov 24, 2022 - 12:00 a.m.

ZTE MF286R SQL Injection Vulnerability

2022-11-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
20
zte
mf286r
sql injection
vulnerability
phonebook interface
authentication
china
cnvd

0.001 Low

EPSS

Percentile

37.0%

The ZTE MF286R is a wireless router from ZTE Corporation (China).A SQL injection vulnerability exists in previous versions of the ZTE MF286R mf286r_b07, which stems from insufficient validation of the input parameters of the phonebook interface. An authenticated attacker could use this vulnerability to perform arbitrary SQL injection.

0.001 Low

EPSS

Percentile

37.0%

Related for CNVD-2022-85533