CVE-2018-7365 Vulnerability Details
/
/
/
CVE-2018-7365 Metadata Quick Info
CVE Published: 20/12/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018
Source: zte |
Vendor: ZTE |
Product: uSmartView
Status : PUBLISHED
CVE-2018-7365 Description
All versions up to ZXCLOUD iRAI V5.01.05 of the ZTE uSmartView product are impacted by untrusted search path vulnerability, which may allow an unauthorized user to perform unauthorized operations.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID: CWE-426
CWE Name: CWE-426: Untrusted Search Path
Source: ZTE
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).