CVE-2019-3409: ZTE WF820+ Lte Outdoor CPE Firmware
High severity, CVSS 8.8. EPSS: 1.9% chance of exploitation in the next 30 days.
All versions up to UKBB_WF820+_1.0.0B06 of ZTE WF820+ LTE Outdoor CPE product are impacted by command injection vulnerability. Due to inadequate parameter verification, unauthorized users can take advantage of this vulnerability to control the user terminal system.
Affected products
- ZTE WF820+ Lte Outdoor CPE Firmware: before 1.0.0b06 (fixed in 1.0.0b06)
Published 2019-06-11. Last modified 2026-06-17.