Description
There is a Cross-site scripting (XSS) vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack will be triggered.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
ZTE_STD_V1.0.0B11
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46273 | There is a Cross-site scripting (XSS) vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack will be triggered. |
References
History
Tue, 03 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: zte
Published:
Updated: 2025-06-03T14:28:12.265Z
Reserved: 2023-09-01T09:02:00.657Z
Link: CVE-2023-41781
Updated: 2024-08-02T19:09:48.212Z
Status : Modified
Published: 2024-01-10T07:15:49.423
Modified: 2024-11-21T08:21:40.457
Link: CVE-2023-41781
No data.
OpenCVE Enrichment
No data.
EUVD