Zte Security Vulnerabilities (CVEs)

Track 28 security vulnerabilities affecting Zte products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

7 Critical
14 High
7 Medium
🔔 Get Alerts for Zte
CVE-2025-46578 6.5

SQL injection vulnerabilities in GoldenDB database interfaces allow attackers to execute arbitrary SQL commands and extract sensitive data. Organizati...

Apr 27, 2025
CVE-2025-46579 8.4

This CVE describes a DDE injection vulnerability in GoldenDB database products that allows attackers to embed malicious DDE expressions in files. When...

Apr 27, 2025
CVE-2025-46576 5.4

This vulnerability in GoldenDB database allows attackers to bypass privilege restrictions through request manipulation, enabling unauthorized content ...

Apr 27, 2025
CVE-2025-46574 4.1

An information disclosure vulnerability in GoldenDB database allows attackers to extract sensitive system information through error messages. Organiza...

Apr 27, 2025
CVE-2025-26706 5.4

An improper privilege management vulnerability in ZTE GoldenDB allows authenticated users to escalate their privileges beyond intended levels. This af...

Mar 11, 2025
CVE-2025-26702 4.9

An improper input validation vulnerability in ZTE GoldenDB allows attackers to manipulate input data, potentially leading to unauthorized data modific...

Mar 11, 2025
CVE-2025-26704 6.4

A privilege management vulnerability in ZTE GoldenDB allows authenticated users to escalate their privileges beyond intended levels. This affects Gold...

Mar 11, 2025
CVE-2024-22063 7.6

ZTE ZENIC ONE R58 products contain a command injection vulnerability that allows authenticated attackers to execute arbitrary commands. This enables m...

Dec 30, 2024
CVE-2024-22066 7.5

CVE-2024-22066 is an authentication bypass vulnerability in ZTE ZXR10 ZSR V2 routers that allows authenticated attackers to escalate privileges and ac...

Oct 29, 2024
CVE-2024-22065 6.8

This CVE describes a command injection vulnerability in ZTE MF258 Pro mobile hotspot devices. An authenticated attacker can exploit insufficient param...

Oct 29, 2024
CVE-2024-10119 9.8

CVE-2024-10119 is a critical OS command injection vulnerability in SECOM WRTM326 wireless routers that allows unauthenticated remote attackers to exec...

Oct 18, 2024
CVE-2024-22069 7.1

This vulnerability allows authenticated users with common permissions to intercept password change requests and modify administrator credentials on ZT...

Aug 8, 2024
CVE-2024-22064 8.3

ZTE ZXUN-ePDG products use non-unique cryptographic keys by default when establishing IKE secure connections with mobile devices over the internet. If...

May 14, 2024
CVE-2023-25643 8.4

CVE-2023-25643 is a command injection vulnerability in certain ZTE mobile internet products that allows authenticated attackers to execute arbitrary c...

Dec 14, 2023
CVE-2023-25645 7.7

This vulnerability in ZTE AndroidTV set-top boxes allows non-privileged applications to bypass permission controls and execute protected functions. At...

Jun 16, 2023
CVE-2022-39071 7.1

This vulnerability in some ZTE mobile phones allows malicious applications to overwrite system configuration files and user installers without user pe...

May 30, 2023
CVE-2022-39075 7.1

This vulnerability allows malicious applications installed on affected ZTE mobile phones to delete system files without user permission. It affects us...

May 30, 2023
CVE-2022-23139 8.8

This vulnerability in ZTE's ZXMP M721 product involves incorrect SFTP folder permission reporting (showing 666 instead of actual permissions), allowin...

May 12, 2022
CVE-2021-21751 8.1

This vulnerability in ZTE BigVideo analysis product allows authenticated attackers with high privileges to tamper with URLs due to inconsistent front-...

Dec 27, 2021
CVE-2021-21744 7.5

This vulnerability in ZTE MF971R devices allows attackers to modify configuration files, potentially disabling security functions. It affects users of...

Oct 20, 2021
CVE-2021-21748 9.8

CVE-2021-21748 affects ZTE MF971R mobile hotspot devices with two stack-based buffer overflow vulnerabilities. Attackers can exploit these vulnerabili...

Oct 20, 2021
CVE-2021-21741 9.8

CVE-2021-21741 is a critical remote code execution vulnerability in ZTE conference management systems where attackers can execute arbitrary commands b...

Aug 30, 2021
CVE-2021-21736 7.2

This vulnerability in ZTE smart cameras allows users whose sharing permissions have been revoked to still control the camera remotely through the clou...

Jun 10, 2021
CVE-2021-21732 7.5

This vulnerability allows third-party applications on affected ZTE mobile phones to read sensitive files from the proc filesystem without proper autho...

May 19, 2021
CVE-2021-21730 9.8

This vulnerability allows attackers to bypass authentication on ZTE ZXHN H168N routers via brute force attacks against the command-line interface (CLI...

Apr 13, 2021
CVE-2020-6880 9.8

This is a critical SQL injection vulnerability in ZXELINK wireless controllers that allows remote attackers to execute arbitrary SQL commands without ...

Dec 1, 2020
CVE-2020-6875 9.8

This vulnerability in ZTE networking products allows attackers to bypass authentication through brute-force attacks due to missing access control mech...

Oct 5, 2020
CVE-2020-6874 9.1

This vulnerability in ZTE ZXIPTV products involves improper implementation of cryptographic algorithms, allowing remote attackers to perform account c...

Sep 1, 2020

Why Monitor Zte Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 28+ known vulnerabilities affecting Zte products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Zte packages in under 60 seconds. No agents required - completely agentless scanning that works across Zte deployments.

Free vulnerability database: Access detailed information about every Zte CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Zte CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Zte CVEs Free