There is a command injection vulnerability of ZTE\'s ZXCLOUD iRAI. Due to the program failed to adequately validate the user\'s input, an attacker could exploit this vulnerability to escalate local privileges.
Metrics
CVSS Version: 3.1 |
Base Score: 4.3 MEDIUM Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L