CVE-2020-6881
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
ZTE E8810/E8820/E8822 series routers have an MQTT DoS vulnerability, which is caused by the failure of the device to verify the validity of abnormal messages. A remote attacker could connect to the MQTT server and send an MQTT exception message to the specified device, which will cause the device to deny service. This affects:<ZXHN E8810, ZXHN E8820, ZXHN E8822><E8810 V1.0.26, E8810 V2.0.1, E8820 V1.1.3L, E8820 V2.0.13, E8822 V2.0.13>
Los enrutadores de la serie ZTE E8810/E8820/E8822, presentan una vulnerabilidad de DoS de MQTT, que es causada por el fallo del dispositivo para verificar la validez de mensajes anormales. Un atacante remoto podría conectarse al servidor MQTT y enviar un mensaje de excepción MQTT al dispositivo especificado, lo que causará que el dispositivo deniegue el servicio. Esto afecta a: (ZXHN versión E8810, ZXHN versión E8820, ZXHN versión E8822)(E8810 versión V1.0.26, E8810 versión V2.0.1, E8820 versión V1.1.3L, E8820 versión V2.0.13, E8822 versión V2.0.13)
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-01-13 CVE Reserved
- 2020-12-21 CVE Published
- 2023-09-06 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-346: Origin Validation Error
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1014202 | 2020-12-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Zte Search vendor "Zte" | Zxhn E8810 Firmware Search vendor "Zte" for product "Zxhn E8810 Firmware" | 1.0.26 Search vendor "Zte" for product "Zxhn E8810 Firmware" and version "1.0.26" | - |
Affected
| in | Zte Search vendor "Zte" | Zxhn E8810 Search vendor "Zte" for product "Zxhn E8810" | - | - |
Safe
|
Zte Search vendor "Zte" | Zxhn E8810 Firmware Search vendor "Zte" for product "Zxhn E8810 Firmware" | 2.0.1 Search vendor "Zte" for product "Zxhn E8810 Firmware" and version "2.0.1" | - |
Affected
| in | Zte Search vendor "Zte" | Zxhn E8810 Search vendor "Zte" for product "Zxhn E8810" | - | - |
Safe
|
Zte Search vendor "Zte" | Zxhn E8820 Firmware Search vendor "Zte" for product "Zxhn E8820 Firmware" | 1.1.3 Search vendor "Zte" for product "Zxhn E8820 Firmware" and version "1.1.3" | - |
Affected
| in | Zte Search vendor "Zte" | Zxhn E8820 Search vendor "Zte" for product "Zxhn E8820" | - | - |
Safe
|
Zte Search vendor "Zte" | Zxhn E8820 Firmware Search vendor "Zte" for product "Zxhn E8820 Firmware" | 2.0.13 Search vendor "Zte" for product "Zxhn E8820 Firmware" and version "2.0.13" | - |
Affected
| in | Zte Search vendor "Zte" | Zxhn E8820 Search vendor "Zte" for product "Zxhn E8820" | - | - |
Safe
|
Zte Search vendor "Zte" | Zxhn E8822 Firmware Search vendor "Zte" for product "Zxhn E8822 Firmware" | 2.0.13 Search vendor "Zte" for product "Zxhn E8822 Firmware" and version "2.0.13" | - |
Affected
| in | Zte Search vendor "Zte" | Zxhn E8822 Search vendor "Zte" for product "Zxhn E8822" | - | - |
Safe
|