CVE-2018-7360: Infoleak
Published Nov 16, 2018
·Updated
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by information exposure vulnerability, which may allow an unauthenticated attacker to get the GPON SN information via appviahttp service.
Affected Software
2 affected components
ZTE Zxhn F670 Firmware<1.1.10p3t18
ZTE ZXHN F670
Event History
Nov 16, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-7360?
CVE-2018-7360 has a low severity rating as it involves information exposure that can be exploited by unauthenticated attackers.
2
How do I fix CVE-2018-7360?
To mitigate CVE-2018-7360, upgrade the ZTE ZXHN F670 firmware to version 1.1.10P3T19 or later.
3
What type of vulnerability is CVE-2018-7360?
CVE-2018-7360 is classified as an information exposure vulnerability.
4
What information can be accessed due to CVE-2018-7360?
CVE-2018-7360 allows attackers to obtain the GPON SN information of the vulnerable ZTE ZXHN F670 device.
5
Is my device safe if it is running a firmware version higher than 1.1.10P3T18 regarding CVE-2018-7360?
Yes, devices running firmware version 1.1.10P3T19 or later are not affected by CVE-2018-7360.