CVE-2019-3429: Medium severity zte zxcloud goldendata vap vulnerability
Published Dec 23, 2019
·Updated
All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have a file reading vulnerability. Attackers could obtain log file information without authorization, causing the disclosure of sensitive information.
Affected Software
1 affected component
ZTE ZXCLOUD GoldenData VAP<=zxivs-vap-portal-xzgav4.01.01.02
Event History
Dec 23, 2019
CVE Published
via MITRE·06:09 PM
Data Sourced
via MITRE·06:09 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-3429?
CVE-2019-3429 is considered a high severity vulnerability due to unauthorized access to sensitive log file information.
2
How do I fix CVE-2019-3429?
To fix CVE-2019-3429, you should update to a version of ZTE ZXCLOUD GoldenData VAP that is newer than V4.01.01.02.
3
What type of vulnerability is CVE-2019-3429?
CVE-2019-3429 is categorized as a file reading vulnerability.
4
What could attackers achieve with CVE-2019-3429?
Attackers exploiting CVE-2019-3429 could gain unauthorized access to sensitive information contained in log files.
5
Which versions of the software are affected by CVE-2019-3429?
All versions of ZTE ZXCLOUD GoldenData VAP up to and including V4.01.01.02 are affected by CVE-2019-3429.