First published: Fri Dec 01 2017(Updated: )
connoppp.cgi on ZTE ZXDSL 831CII devices does not require HTTP Basic Authentication, which allows remote attackers to modify the PPPoE configuration or set up a malicious configuration via a GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zte Zxdsl 831cii Firmware | ||
ZTE ZXDSL 831CII |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.