Security Advisory

CVE-2024-22065

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-10-29 01:58:29
Last updated 2024-10-29 13:29:22
Assigner zte
State PUBLISHED

Description

There is a command injection vulnerability in ZTE MF258 Pro product. Due to insufficient validation of Ping Diagnosis interface parameter, an authenticated attacker could use the vulnerability to execute arbitrary commands.