ZTE ZXMP M721
cpe:2.3:h:zte:zxmp_m721:*:*:*:*:*:*:*, +1 more
- ZXMPM721V5.30.020.001P01
A private key disclosure vulnerability exists in ZTE's ZXMP M721 product. A low-privileged user can bypass authorization checks to access the device's communication private key, leading to key exposure and compromised communication security.
Exploitation of this vulnerability allows for unauthorized access to the device's communication private key, which can undermine the security of encrypted communications.
To address this vulnerability, users are advised to upgrade to version M721V5.40.010.001. Additionally, it is recommended to harden the SFTP configuration to prevent access to directories containing private keys.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.