CVE-2021-21741: Critical severity zte zxv10 m910 vulnerability
There is a command execution vulnerability in a ZTE conference management system. As some services are enabled by default, the attacker could exploit this vulnerability to execute arbitrary commands by sending specific serialization command.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-21741?
CVE-2021-21741 is a command execution vulnerability in the ZTE conference management system.
What is the severity of CVE-2021-21741?
The severity of CVE-2021-21741 is critical with a score of 9.8.
How does CVE-2021-21741 affect ZTE ZXV10 M910 firmware?
CVE-2021-21741 affects ZTE ZXV10 M910 firmware versions 1.2.16.01u01.01, 1.2.19.01u01.01, 1.2.20.01u01.01, and 1.2.21.01.04-p01.
How can an attacker exploit CVE-2021-21741?
An attacker can exploit CVE-2021-21741 by sending specific serialization commands to the vulnerable ZTE conference management system.
Is ZTE ZXV10 M910 affected by CVE-2021-21741?
No, ZTE ZXV10 M910 itself is not affected by CVE-2021-21741, but its firmware versions mentioned earlier are vulnerable.