CVE-2019-3428: Medium severity zte zxcdn vulnerability
Published Nov 22, 2019
·Updated
The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a configuration error vulnerability. An attacker could directly access the management portal in HTTP, resulting in users’ information leakage.
Affected Software
2 affected components
ZTE Zxcdn Iamweb Firmware=6.01.03.01
ZTE ZXCDN IAMWEB
Event History
Nov 22, 2019
CVE Published
via MITRE·03:49 PM
Data Sourced
via MITRE·03:49 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-3428 vulnerability about?
The CVE-2019-3428 vulnerability in ZTE ZXCDN IAMWEB product is a configuration error that allows attackers to access the management portal in HTTP, leading to information leakage.
2
How severe is CVE-2019-3428 vulnerability?
CVE-2019-3428 vulnerability has a severity rating of 6.5, categorized as medium severity.
3
What software version is affected by CVE-2019-3428?
The ZTE ZXCDN IAMWEB firmware version 6.01.03.01 is impacted by the CVE-2019-3428 vulnerability.
4
How can I fix CVE-2019-3428 vulnerability?
To address CVE-2019-3428 vulnerability, update the ZTE ZXCDN IAMWEB firmware to a version that has this issue resolved.