CVE-2019-3426 describes an input validation vulnerability affecting ZTE ZXUPN-9000E products, specifically version 9000EV5.0R1B12 and earlier. This high-severity vulnerability (CVSS 8.8) allows an unauthenticated attacker to perform unauthorized operations over the network with low attack complexity, potentially leading to complete compromise of confidentiality, integrity, and availability. While the vulnerability is significant, there is currently no evidence of active exploitation, publicly available exploit code, or notable community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 9000ev5.0r1b12CPE matchmatch criteria | cpe:2.3:o:zte:zxupn-9000e_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.