First published: Wed Jun 24 2020(Updated: )
The version V12.17.20T115 of ZTE U31R20 product is impacted by a design error vulnerability. An attacker could exploit the vulnerability to log in to the FTP server to tamper with the password, and illegally download, modify, upload, or delete files, causing improper operation of the network management system and equipment. This affects: NetNumenU31R20 V12.17.20T115
Credit: psirt@zte.com.cn
Affected Software | Affected Version | How to fix |
---|---|---|
ZTE NetNumen U31 R10 | =v12.17.20t115 | |
ZTE NetNumen U31 R10 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6870 is considered a design error vulnerability that allows unauthorized access to the FTP server.
To fix CVE-2020-6870, ensure that you apply the latest firmware updates that address the identified vulnerability.
Due to CVE-2020-6870, an attacker could illegally log in to the FTP server to tamper with passwords and access files.
The affected version regarding CVE-2020-6870 is ZTE Netnumen U31 R10 firmware version V12.17.20T115.
Organizations utilizing the ZTE Netnumen U31 R10 product with the specified affected firmware version are primarily impacted by CVE-2020-6870.