ZTE Cloud Computer Client PROCESS Guard Local Privilege Escalation Vulnerability

Vulnerability

A local privilege escalation vulnerability has been identified in the ZTE PROCESS Guard service of the cloud computer client. This vulnerability may allow local arbitrary code execution, privilege escalation, and bypassing of path traversal restrictions.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights or access within the system. Additionally, it could enable local arbitrary code execution.

Remediation

Users can upgrade to ZXCLOUD-iRAI-ClientV7.25.43 to address this vulnerability. For assistance, contact the ZTE Global Customer Support Center.

Added: May 6, 2026, 11:17 AM
Updated: May 6, 2026, 11:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
10.0
exploitability
3.5
remediation
7.7
relevance
7.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.