CNNVD-202511-2969 Information

CNNVD ID

CNNVD-202511-2969

CVE-2025-66314

  • CNNVD Published: 2025-11-27

Description (Chinese)

ZTE ElasticNet UME R32是中国中兴通讯(ZTE)公司的一个业务管理与流量处理平台。 ZTE ElasticNet UME R32 ElasticNet_UME_R32_V16.23.20.04版本存在安全漏洞,该漏洞源于权限管理不当,可能导致访问未受ACL适当约束的功能。

Description (English)

ZTE ElasticNet UME R32 is a business management and traffic-processing platform for the China China Communications Corporation (ZTE). ZTE ElasticNet UME R32 ElasticNet UME R32 V16.23.0.04 contains a security loophole, which stems from inadequate authority management and may lead to access to functions that are not properly regulated by ACL.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

中兴通讯

Published

2025-11-27

Last Modified

2026-02-24

References

https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/2180460616364429350 https://access.redhat.com/security/cve/cve-2025-66314

Patch

https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/2180460616364429350

Share on: