2 results (0.006 seconds)

CVSS: 7.5EPSS: 0%CPEs: 8EXPL: 0

21 Dec 2020 — ZTE E8810/E8820/E8822 series routers have an information leak vulnerability, which is caused by hard-coded MQTT service access credentials on the device. The remote attacker could use this credential to connect to the MQTT server, so as to obtain information about other devices by sending specific topics. This affects: Los enrutadores de la serie ZTE E8810/E8820/E8822, presentan una vulnerabilidad d... • http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1014202 • CWE-798: Use of Hard-coded Credentials •

CVSS: 7.5EPSS: 0%CPEs: 8EXPL: 0

21 Dec 2020 — ZTE E8810/E8820/E8822 series routers have an MQTT DoS vulnerability, which is caused by the failure of the device to verify the validity of abnormal messages. A remote attacker could connect to the MQTT server and send an MQTT exception message to the specified device, which will cause the device to deny service. This affects: Los enrutadores de la serie ZTE E8810/E8820/E8822, presentan una vulnerab... • http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1014202 • CWE-346: Origin Validation Error •