CVE-2019-3425: ZTE Zxupn-9000e Firmware
High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.
The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by vulnerability of permission and access control. An attacker could exploit this vulnerability to directly reset or change passwords of other accounts.
Affected products
- ZTE Zxupn-9000e Firmware: before 9000ev5.0r1b12 (fixed in 9000ev5.0r1b12)
Published 2019-11-08. Last modified 2026-06-17.