ZTE GoldenDB Privilege Escalation Vulnerability
Vulnerability
A privilege escalation vulnerability has been identified in ZTE GoldenDB versions 6.1.03 prior to 6.1.03.05. This vulnerability allows attackers to improperly manage privileges, enabling them to escalate privileges horizontally by manipulating requests to delete tasks assigned to other users.
Impact
Exploitation of this vulnerability allows for horizontal privilege escalation, where an attacker can gain access to tasks or data belonging to other users by deleting their assigned tasks.
Remediation
Users can upgrade to ZTE GoldenDB version 6.1.03.06 to address this vulnerability. For assistance, contact the ZTE Global Customer Support Center.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
