CVE-2020-6874: Critical severity zte zxiptv vulnerability
A ZTE product is impacted by the cryptographic issues vulnerability. The encryption algorithm is not properly used, so remote attackers could use this vulnerability for account credential enumeration attack or brute-force attack for password guessing. This affects: ZXIPTV, ZXIPTV-WEB-PV5.09.08.04.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-6874?
CVE-2020-6874 is a vulnerability in a ZTE product that is impacted by cryptographic issues.
What is the severity of CVE-2020-6874?
The severity of CVE-2020-6874 is critical with a CVSS score of 9.1.
Which ZTE products are affected by CVE-2020-6874?
The ZTE products affected by CVE-2020-6874 are ZXIPTV and ZXIPTV-WEB-PV5.09.08.04.
What are the potential attacks that can be carried out using CVE-2020-6874?
Remote attackers could use CVE-2020-6874 for account credential enumeration attack or brute-force attack for password guessing.
Is there any fix available for CVE-2020-6874?
To fix CVE-2020-6874, it is recommended to update the affected ZTE product to a patched version.