V6.0.10P2T2 and V6.0.10P2T5 of F6x2W product are impacted by Information leak vulnerability. Unauthorized users could log in directly to obtain page information without entering a verification code.
References
Link | Resource |
---|---|
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1012162 | Vendor Advisory |
http://packetstormsecurity.com/files/159135/ZTE-F602W-CAPTCHA-Bypass.html | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-01-17 10:15
Updated : 2022-04-26 13:05
NVD link : CVE-2020-6862
Mitre link : CVE-2020-6862
JSON object : View
CWE
CWE-669
Incorrect Resource Transfer Between Spheres
Products Affected
zte
- f6x2w_firmware
- f6x2w