First published: Tue Nov 22 2022(Updated: )
There is a buffer overflow vulnerability in ZTE MF286R. Due to lack of input validation on parameters of the wifi interface, an authenticated attacker could use the vulnerability to perform a denial of service attack.
Credit: psirt@zte.com.cn
Affected Software | Affected Version | How to fix |
---|---|---|
Zte Mf286r Firmware | <mf286r_b07 | |
ZTE MF286R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-39067.
An authenticated attacker could use the vulnerability to perform a denial of service attack.
ZTE MF286R with firmware versions up to and including mf286r_b07.
Yes, ZTE MF286R software version mf286r_b07 is vulnerable to CVE-2022-39067.
Apply the latest firmware update provided by ZTE to fix the vulnerability.