CVE-2023-41783: ZTE Zxcloud Irai

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

There is a command injection vulnerability of ZTE's ZXCLOUD iRAI. Due to the  program  failed to adequately validate the user's input, an attacker could exploit this vulnerability  to escalate local privileges.

Affected products

  • ZTE Zxcloud Irai: before 7.23.32 (fixed in 7.23.32)

Published 2024-01-03. Last modified 2026-06-17.