ZTE GoldenDB Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in ZTE GoldenDB versions 6.1.03 prior to 6.1.03.05. This vulnerability allows attackers to improperly manage privileges, enabling them to escalate privileges horizontally by manipulating requests to delete tasks assigned to other users.

Impact

Exploitation of this vulnerability allows for horizontal privilege escalation, where an attacker can gain access to tasks or data belonging to other users by deleting their assigned tasks.

Remediation

Users can upgrade to ZTE GoldenDB version 6.1.03.06 to address this vulnerability. For assistance, contact the ZTE Global Customer Support Center.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
4.8
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.