Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 20 Oct 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zte
Zte zxcdn |
|
| Vendors & Products |
Zte
Zte zxcdn |
Tue, 14 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Oct 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ZTE's ZXCDN product is affected by a Struts remote code execution (RCE) vulnerability. An unauthenticated attacker can remotely execute commands with non-root privileges. | |
| Title | ZTE ZXCDN product has a Struts RCE Vulnerability | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: zte
Published:
Updated: 2025-10-14T15:30:20.230Z
Reserved: 2025-04-25T00:28:13.909Z
Link: CVE-2025-46581
Updated: 2025-10-14T15:30:12.608Z
Status : Deferred
Published: 2025-10-14T09:15:33.227
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-46581
No data.
OpenCVE Enrichment
Updated: 2025-10-20T15:52:38Z