CVE-2021-21744: High severity zte mf971r firmware vulnerability
Published Oct 20, 2021
·Updated
ZTE MF971R product has a configuration file control vulnerability. An attacker could use this vulnerability to modify the configuration parameters of the device, causing some security functions of the device to be disabled.
Affected Software
6 affected components
ZTE Mf971r Firmware=v1.0.0b05
ZTE MF971R
ZTE Mf971r Firmware=1v1.0.0b06
ZTE Mf971r Firmware=2v1.0.0b03
ZTE Mf971r Firmware=s2v1.0.0b03
ZTE Mf971r Firmware=sv1.0.0b05
Event History
Oct 20, 2021
CVE Published
via MITRE·03:18 PM
Data Sourced
via MITRE·03:18 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-21744?
CVE-2021-21744 is a configuration file control vulnerability in the ZTE MF971R product.
2
How does the vulnerability in ZTE MF971R affect the device?
The vulnerability allows an attacker to modify the configuration parameters of the device, potentially disabling some security functions.
3
What is the severity of CVE-2021-21744?
The severity of CVE-2021-21744 is high, with a score of 7.5.
4
Is ZTE MF971R firmware v1.0.0b05 affected by CVE-2021-21744?
Yes, ZTE MF971R firmware v1.0.0b05 is affected by CVE-2021-21744.
5
How can I fix the vulnerability in ZTE MF971R?
To fix the vulnerability, it is recommended to update to a fixed version of the firmware provided by ZTE.