CVE-2025-26704: Medium severity ZTE GoldenDB vulnerability
Published Mar 11, 2025
·Updated
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.05.
Affected Software
2 affected components
ZTE GoldenDB>=6.1.03<=6.1.03.05
ZTE GoldenDB>=6.1.03 <=6.1.03.05
Event History
Mar 11, 2025
CVE Published
via MITRE·06:55 AM
Data Sourced
via MITRE·06:55 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-26704?
The severity of CVE-2025-26704 is classified as high due to its potential for privilege escalation.
2
How do I fix CVE-2025-26704?
To fix CVE-2025-26704, update ZTE GoldenDB to a version higher than 6.1.03.05.
3
What versions of ZTE GoldenDB are affected by CVE-2025-26704?
CVE-2025-26704 affects ZTE GoldenDB versions from 6.1.03 to 6.1.03.05.
4
What type of vulnerability is CVE-2025-26704?
CVE-2025-26704 is an improper privilege management vulnerability that allows privilege escalation.
5
Who is the vendor for the affected software in CVE-2025-26704?
The vendor for the affected software in CVE-2025-26704 is ZTE.