CVE-2025-46576: ZTE Zxcloud Goldendb

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

There is a Permission Management and Access Control vulnerability in the GoldenDB database product. Attackers can manipulate requests to bypass privilege restrictions and delete content.

Affected products

  • ZTE Zxcloud Goldendb: version 6.1.03.09 only; version 6.1.03.10 only; version 7.2.01.01 only

Published 2025-04-27. Last modified 2026-06-17.