CVE-2021-21747: XSS
Published Oct 20, 2021
·Updated
ZTE MF971R product has reflective XSS vulnerability. An attacker could use the vulnerability to obtain cookie information.
Affected Software
6 affected components
ZTE Mf971r Firmware=v1.0.0b05
ZTE MF971R
ZTE Mf971r Firmware=1v1.0.0b06
ZTE Mf971r Firmware=2v1.0.0b03
ZTE Mf971r Firmware=s2v1.0.0b03
ZTE Mf971r Firmware=sv1.0.0b05
Event History
Oct 20, 2021
CVE Published
via MITRE·02:38 PM
Data Sourced
via MITRE·02:38 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-21747?
CVE-2021-21747 is a reflective XSS vulnerability found in the ZTE MF971R product.
2
How can an attacker exploit CVE-2021-21747?
An attacker can exploit CVE-2021-21747 to obtain cookie information.
3
What is the severity of CVE-2021-21747?
The severity of CVE-2021-21747 is medium with a severity value of 6.1.
4
Which software versions are affected by CVE-2021-21747?
Zte Mf971r Firmware versions v1.0.0b05, 1v1.0.0b06, 2v1.0.0b03, s2v1.0.0b03, and sv1.0.0b05 are affected by CVE-2021-21747.
5
Is ZTE MF971R vulnerable to CVE-2021-21747?
No, ZTE MF971R is not vulnerable to CVE-2021-21747.