CVE-2015-7248: Infoleak
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.kPE allow remote attackers to discover usernames and password hashes by reading the cgi-bin/webproc HTML source code, a different vulnerability than CVE-2015-8703.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7248?
CVE-2015-7248 is classified as having a medium severity due to the exposure of sensitive information.
How do I fix CVE-2015-7248?
To mitigate CVE-2015-7248, update the ZTE ZXHN H108N R1A firmware to the latest version that addresses this vulnerability.
What systems are affected by CVE-2015-7248?
CVE-2015-7248 affects ZTE ZXHN H108N R1A devices running firmware versions prior to zte.bhs.zxhnh108nr1a.k_PE.
What is the impact of CVE-2015-7248?
The impact of CVE-2015-7248 includes potential unauthorized access to usernames and password hashes, which could lead to further exploitation.
Is CVE-2015-7248 related to any other vulnerabilities?
CVE-2015-7248 is a different vulnerability than CVE-2015-8703, as it specifically addresses the exposure of sensitive information through HTML source code.