ZXMP M721 has an information leak vulnerability. Since the serial port authentication on the ZBOOT interface is not effective although it is enabled, an attacker could use this vulnerability to log in to the device to obtain sensitive information.
                
            References
                    | Link | Resource | 
|---|---|
| https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1025264 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    No history.
Information
                Published : 2022-07-15 15:15
Updated : 2022-07-22 16:24
NVD link : CVE-2022-23141
Mitre link : CVE-2022-23141
CVE.ORG link : CVE-2022-23141
JSON object : View
Products Affected
                zte
- zxmp_m721_firmware
- zxmp_m721
CWE
                
                    
                        
                        CWE-532
                        
            Insertion of Sensitive Information into Log File
