CVE-2023-41779

There is an illegal memory access vulnerability of ZTE's ZXCLOUD iRAI product.When the vulnerability is exploited by an attacker with the common user permission, the physical machine will be crashed.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:zte:zxcloud_irai:*:*:*:*:*:*:*:*
cpe:2.3:a:zte:zxcloud_irai:-:*:*:*:*:*:*:*

History

28 Jan 2025, 15:36

Type Values Removed Values Added
CPE cpe:2.3:o:zte:zxcloud_irai_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:zte:zxcloud_irai:-:*:*:*:*:*:*:*
cpe:2.3:a:zte:zxcloud_irai:-:*:*:*:*:*:*:*
cpe:2.3:a:zte:zxcloud_irai:*:*:*:*:*:*:*:*

21 Nov 2024, 08:21

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 5.5
v2 : unknown
v3 : 4.4
References () https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1034404 - Vendor Advisory () https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1034404 - Vendor Advisory

03 Jan 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-03 02:15

Updated : 2025-01-28 15:36


NVD link : CVE-2023-41779

Mitre link : CVE-2023-41779

CVE.ORG link : CVE-2023-41779


JSON object : View

Products Affected

zte

  • zxcloud_irai
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-863

Incorrect Authorization