Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-21738

ZTE's big video business platform has two reflective cross-site scripting (XSS) vulnerabilities. Due to insufficient input verification, the attacker could implement XSS attacks by tampering with the parameters, to affect the operations of valid users. This affects: <ZXIPTV><ZXIPTV-EAS_PV5.06.04.09>
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 66.1%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2021-21738
  • Zte » Zxiptv » Version: N/A
    cpe:2.3:h:zte:zxiptv:-
  • Zte » Zxiptv Firmware » Version: zxiptv-eas_pv5.06.04.09
    cpe:2.3:o:zte:zxiptv_firmware:zxiptv-eas_pv5.06.04.09


Contact Us

Shodan ® - All rights reserved