← Back to browse · API

CVE-2019-3412

Severity
CRITICAL
CVSS
9.8
EPSS
0.02945
Risk score
40.23
CISA KEV
No
PoC
No
Published
2019-06-11
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2019-13051, GHSA-CF37-HF6F-GWFG
Products
ZTE:ZTE MF920 unspecified ≤All versions up to BD_R218V2.4
Sources
euvd EUVD-2019-13051

Description

All versions up to BD_R218V2.4 of ZTE MF920 product are impacted by command execution vulnerability. Due to some interfaces do not adequately verify parameters, an attacker can execute arbitrary commands through specific interfaces.

References