All versions prior to ZSRV2 V3.00.40 of the ZTE ZXR10 1800-2S products allow remote authenticated users to bypass the original password authentication protection to change other user's password.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-2573 All versions prior to ZSRV2 V3.00.40 of the ZTE ZXR10 1800-2S products allow remote authenticated users to bypass the original password authentication protection to change other user's password.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: zte

Published:

Updated: 2024-09-16T20:01:55.652Z

Reserved: 2017-07-05T00:00:00

Link: CVE-2017-10935

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-07-25T15:29:00.263

Modified: 2024-11-21T03:06:47.253

Link: CVE-2017-10935

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.