CVE-2019-3418: XSS
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by cross-site scripting vulnerability (XSS). Due to incomplete input validation, an authorized user can exploit this vulnerability to execute malicious scripts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-3418?
CVE-2019-3418 is classified as a cross-site scripting (XSS) vulnerability with a moderate severity level.
How do I fix CVE-2019-3418?
To mitigate CVE-2019-3418, upgrade the ZTE ZXHN F670 firmware to version 1.1.10P3T19 or later.
Who is affected by CVE-2019-3418?
All users of the ZTE ZXHN F670 product with firmware versions up to V1.1.10P3T18 are affected by CVE-2019-3418.
What causes CVE-2019-3418?
CVE-2019-3418 is caused by incomplete input validation allowing script execution by authorized users.
Can CVE-2019-3418 be exploited remotely?
Yes, CVE-2019-3418 can potentially be exploited remotely if an attacker can trick an authorized user into executing malicious scripts.