CVE-2019-3427: Code Injection
Published Nov 22, 2019
·Updated
The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a code injection vulnerability. An attacker could exploit the vulnerability to inject malicious code into the management page, resulting in users’ information leakage.
Affected Software
2 affected components
ZTE Zxcdn Iamweb Firmware=6.01.03.01
ZTE ZXCDN IAMWEB
Event History
Nov 22, 2019
CVE Published
via MITRE·03:49 PM
Data Sourced
via MITRE·03:49 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-3427?
The severity of CVE-2019-3427 is rated as high with a score of 7.2.
2
How can I mitigate CVE-2019-3427 vulnerability?
To mitigate CVE-2019-3427, apply the patch provided by the vendor or update to a non-vulnerable version of the ZTE ZXCDN IAMWEB product.
3
What software version is affected by CVE-2019-3427?
The version V6.01.03.01 of ZTE ZXCDN IAMWEB Firmware is affected by CVE-2019-3427.