Vulnerabilities
Vulnerable Software
Zte:  >> Mf971r  Security Vulnerabilities
ZTE MF971R product has a CRLF injection vulnerability. An attacker could exploit the vulnerability to modify the HTTP response header information through a specially crafted HTTP request.
CVSS Score
4.3
EPSS Score
0.004
Published
2021-10-20
ZTE MF971R product has a configuration file control vulnerability. An attacker could use this vulnerability to modify the configuration parameters of the device, causing some security functions of the device to be disabled.
CVSS Score
7.5
EPSS Score
0.002
Published
2021-10-20
ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to click.
CVSS Score
4.3
EPSS Score
0.406
Published
2021-10-20
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.013
Published
2021-10-20
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.013
Published
2021-10-20
ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information.
CVSS Score
6.1
EPSS Score
0.005
Published
2021-10-20
ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information.
CVSS Score
6.1
EPSS Score
0.005
Published
2021-10-20


Contact Us

Shodan ® - All rights reserved