CVE-2021-21737 Information
Jun 07, 2022
cve
Description
A smart STB product of ZTE is impacted by a permission and access control vulnerability. Due to insufficient protection of system application attackers could use this vulnerability to tamper with the system desktop and affect system customization functions. This affects: ZXV10 B860H V5.0 V83011303.0010 V83011303.0016
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Reference
https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1016004
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
HIGH
Base Score
NONE
Base Severity
7.5
Share on: